Cross-site Scripting Vulnerability in Theater for WordPress Plugin
CVE-2025-69343
6.5MEDIUM
What is CVE-2025-69343?
An improper neutralization of input during web page generation has been identified in the Theater for WordPress plugin, allowing for stored cross-site scripting (XSS) attacks. This vulnerability can enable attackers to inject malicious scripts into web pages that are viewed by unsuspecting users, potentially compromising user data or enabling further exploits.
Affected Version(s)
Theater for WordPress 0 <= 0.19