Cross-Site Scripting Vulnerability in List Pages at Depth by Ben Huson
CVE-2025-22517
6.5MEDIUM
What is CVE-2025-22517?
A Cross-site Scripting (XSS) vulnerability exists in the List Pages at Depth plugin developed by Ben Huson, which allows for stored XSS attacks. This issue can be exploited due to improper neutralization of input during web page generation. Affected versions include all versions from n/a through 1.5, potentially compromising user data and website integrity.
Affected Version(s)
List Pages at Depth <= 1.5