Reflected XSS Vulnerability in Stray Random Quotes Plugin by NotFound
CVE-2025-23883
What is CVE-2025-23883?
The Stray Random Quotes plugin by NotFound is prone to a reflected Cross-site Scripting (XSS) vulnerability. This flaw allows attackers to inject malicious scripts that can be executed on users' browsers, potentially leading to session hijacking, redirection to malicious sites, or the theft of sensitive information. The vulnerability affects versions from n/a through 1.9.9, creating a significant risk for users of this plugin. It is crucial for those using this plugin to update to the latest version to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Stray Random Quotes <= 1.9.9
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved