Skip to main content
Loading…
    CVE-2025-11267 — The VK All in One Expansion Unit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '_veu_custom_css' parameter in all versions up to, and including, 9.112.1. This is du — CVE Database · The Intelligence Room