CVE
CVE-2025-1064 — Login/Signup Popup ( Inline Form + Woocommerce ) < 2.8.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via xoo_el_action Shortcode
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2025-1064 | Login/Signup Popup ( Inline Form + Woocommerce ) < 2.8.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via xoo_el_action Shortcode | — | Unknown | < 2.8.6 | 2.8.6 | — | — |
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.