CVE-2025-54699 Information

Description

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in masteriyo Masteriyo - LMS allows Stored XSS. This issue affects Masteriyo - LMS: from n/a through 1.18.3.

Reference

https://patchstack.com/database/wordpress/plugin/learning-management-system/vulnerability/wordpress-masteriyo-lms-plugin-plugin-1-18-3-cross-site-scripting-xss-vulnerability?_s_id=cve

CNNVD-202508-1620 (Published: 2025-08-14)

Share on: