CVE-2025-31597 Information

Description

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in crazycric Ultimate Live Cricket WordPress Lite allows Stored XSS. This issue affects Ultimate Live Cricket WordPress Lite: from n/a through 1.4.2.

Reference

https://patchstack.com/database/wordpress/plugin/ultimate-live-cricket-lite/vulnerability/wordpress-ultimate-live-cricket-wordpress-lite-plugin-1-4-2-cross-site-scripting-xss-vulnerability?_s_id=cve

Share on: