CVE-2025-31812 Information

Description

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in Tomas BuddyPress Members Only allows Stored XSS. This issue affects BuddyPress Members Only: from n/a through 3.5.3.

Reference

https://patchstack.com/database/wordpress/plugin/buddypress-members-only/vulnerability/wordpress-buddypress-members-only-plugin-3-5-3-cross-site-scripting-xss-vulnerability?_s_id=cve

Share on: