Cross-site Scripting Vulnerability in WP24 Domain Check by WP24
CVE-2025-24602
7.1HIGH
What is CVE-2025-24602?
A reflected cross-site scripting (XSS) vulnerability exists in the WP24 Domain Check plugin, affecting versions from n/a up to 1.10.14. This vulnerability allows attackers to inject malicious scripts into web pages, potentially compromising user data and session information when users interact with the compromised page. It’s crucial for users of this plugin to implement security measures to mitigate potential exploitation risks.
Affected Version(s)
WP24 Domain Check 0 <= 1.10.14