Reflected XSS Vulnerability in Wptobe-signinup Plugin from NotFound
CVE-2025-30611
7.1HIGH
What is CVE-2025-30611?
A reflected cross-site scripting vulnerability exists in the Wptobe-signinup plugin, allowing attackers to inject malicious scripts through improperly sanitized input. This can lead to unauthorized actions executed within the context of an affected user’s session, potentially enabling data theft and other security exploits.
Affected Version(s)
Wptobe-signinup <= 1.1.2
