Skip to main content
Loading…
    CVE-2025-11265 — The VK All in One Expansion Unit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'vkExUnit_cta_url' and 'vkExUnit_cta_button_text' parameters in all versions — CVE Database · The Intelligence Room