Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Additional Custom Product Tabs for WooCommerce allows Stored XSS. This issue affects Additional Custom Product Tabs for WooCommerce: from n/a through 1.7.3.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Sep 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 09 Sep 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Woocommerce
Woocommerce woocommerce Wordpress Wordpress wordpress Wpfactory Wpfactory additional Custom Product Tabs For Woocommerce |
|
Vendors & Products |
Woocommerce
Woocommerce woocommerce Wordpress Wordpress wordpress Wpfactory Wpfactory additional Custom Product Tabs For Woocommerce |
Tue, 09 Sep 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Additional Custom Product Tabs for WooCommerce allows Stored XSS. This issue affects Additional Custom Product Tabs for WooCommerce: from n/a through 1.7.3. | |
Title | WordPress Additional Custom Product Tabs for WooCommerce Plugin <= 1.7.3 - Cross Site Scripting (XSS) Vulnerability | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-09-10T17:30:28.108Z
Reserved: 2025-09-06T04:45:22.563Z
Link: CVE-2025-58985

Updated: 2025-09-10T17:30:25.095Z

Status : Awaiting Analysis
Published: 2025-09-09T17:16:13.083
Modified: 2025-09-11T17:14:25.240
Link: CVE-2025-58985

No data.