Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxfoundry MaxButtons allows Stored XSS.This issue affects MaxButtons: from n/a through 9.8.3.
Metrics
Affected Vendors & Products
References
History
Wed, 14 May 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in maxfoundry MaxButtons allows Stored XSS. This issue affects MaxButtons: from n/a through 9.8.3. | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxfoundry MaxButtons allows Stored XSS.This issue affects MaxButtons: from n/a through 9.8.3. |
Thu, 17 Apr 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 17 Apr 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in maxfoundry MaxButtons allows Stored XSS. This issue affects MaxButtons: from n/a through 9.8.3. | |
Title | WordPress MaxButtons plugin <= 9.8.3 - Cross Site Scripting (XSS) vulnerability | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2025-04-17T15:16:48.145Z
Updated: 2025-05-14T12:50:47.855Z
Reserved: 2025-04-16T06:23:22.137Z
Link: CVE-2025-39444

Updated: 2025-04-17T16:01:41.266Z

Status : Awaiting Analysis
Published: 2025-04-17T16:15:55.043
Modified: 2025-05-14T13:15:48.797
Link: CVE-2025-39444

No data.