Cross-site Scripting Issue in Awesome Logos by WordPress
CVE-2025-31899
7.1HIGH
What is CVE-2025-31899?
An improper neutralization of user input in the Awesome Logos plugin for WordPress enables reflected Cross-site Scripting (XSS). This vulnerability can allow attackers to inject malicious scripts, compromising the security of users visiting compromised web pages. The affected versions range from no specific version indicated to 1.2, necessitating prompt updates to mitigate potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Awesome Logos <= 1.2
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Le Ngoc Anh (Patchstack Alliance)