Cross-site Scripting Vulnerability in Templatera by WPBakery
CVE-2025-54747
6.5MEDIUM
What is CVE-2025-54747?
This vulnerability arises from inadequate handling of input during the web page generation process in WPBakery's Templatera. It allows for the injection of malicious scripts via DOM-Based XSS, potentially compromising user sessions and exposing sensitive data. Affected versions of Templatera include all from n/a up to 2.3.0, posing significant risks to users utilizing this plugin.
Affected Version(s)
Templatera <= 2.3.0