Reflected Cross-site Scripting Vulnerability in NotFound 4 Author Cheer Up Donate Plugin
CVE-2025-23670
What is CVE-2025-23670?
The NotFound 4 Author Cheer Up Donate plugin for WordPress is affected by a Reflected Cross-site Scripting vulnerability. This flaw arises from the improper neutralization of input during web page generation, allowing attackers to inject malicious scripts into the affected website. When exploited, this can potentially lead to unauthorized actions and compromise user security. Affected versions range from the initial release up to 1.3, emphasizing the need for users and site administrators to implement the latest security updates and best practices.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
4 author cheer up donate <= 1.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved