Metrics
Affected Vendors & Products
Thu, 23 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | cvssV3_1 
 | cvssV3_1 
 | 
Thu, 23 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | cvssV3_1 
 
 | 
Thu, 23 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Aa-team Aa-team woocommerce Envato Affiliates Woocommerce Woocommerce woocommerce Wordpress Wordpress wordpress | |
| Vendors & Products | Aa-team Aa-team woocommerce Envato Affiliates Woocommerce Woocommerce woocommerce Wordpress Wordpress wordpress | 
Wed, 22 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AA-Team Woocommerce Envato Affiliates wooenvato allows Reflected XSS.This issue affects Woocommerce Envato Affiliates: from n/a through <= 1.2.1. | |
| Title | WordPress Woocommerce Envato Affiliates plugin <= 1.2.1 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Patchstack
Published: 2025-10-22T14:32:31.023Z
Updated: 2025-10-23T16:15:06.515Z
Reserved: 2025-06-27T11:58:59.925Z
Link: CVE-2025-53297
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-10-23T13:57:47.640Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-10-22T15:15:48.793
Modified: 2025-10-23T17:15:38.093
Link: CVE-2025-53297
 Redhat
                        Redhat
                    No data.