CVE-2025-49046 | xPromoter Plugin up to 1.3.4 on WordPress cross site scripting
A vulnerability was found in xPromoter Plugin up to 1.3.4 on WordPress. It has been rated as problematic. This impacts an unknown function. This manipulation causes cross site scripting.
This vulnerability is registered as CVE-2025-49046. Remote exploitation of the attack is possible. No exploit is available.