Cross-site Scripting Vulnerability in Pixeline's Email Protector
CVE-2025-58982
5.9MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 September 2025
What is CVE-2025-58982?
An improper neutralization of input during web page generation in Pixeline's Email Protector allows for the potential execution of stored cross-site scripting (XSS) attacks. This vulnerability can be exploited by an attacker to inject malicious scripts that may be executed in the browsers of users accessing the compromised web application. As a result, sensitive information could be disclosed, and user interactions with the site could be manipulated. This issue affects versions of Pixeline's Email Protector from n/a through 1.3.8.
Affected Version(s)
Pixeline's Email Protector <= 1.3.8