Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Emraan Cheema CubeWP allows Stored XSS. This issue affects CubeWP: from n/a through 1.1.26.
Metrics
Affected Vendors & Products
Fixes
Solution
Update the WordPress CubeWP Framework plugin to the latest available version (at least 1.1.27).
Workaround
No workaround given by the vendor.
References
History
Mon, 22 Sep 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Emraan Cheema CubeWP allows Stored XSS. This issue affects CubeWP: from n/a through 1.1.26. | |
Title | WordPress CubeWP Plugin <= 1.1.26 - Cross Site Scripting (XSS) Vulnerability | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-09-22T18:25:58.616Z
Reserved: 2025-09-17T18:01:02.999Z
Link: CVE-2025-59569

No data.

Status : Received
Published: 2025-09-22T19:16:25.127
Modified: 2025-09-22T19:16:25.127
Link: CVE-2025-59569

No data.

No data.