Skip to content
Info Published: Dec 15, 2025

CVE-2025-12684

0 CVSS Score Info
Export CVE-2025-12684 Data:
Share:
Link copied!

Description

The URL Shortify WordPress plugin before 1.11.3 does not sanitize and escape a parameter before outputting it back in the page, leading to a reflected cross site scripting, which could be used against high-privilege users such as admins.