'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2025-31864:WordPress Plugin Beam me up Scotty - Back to Top Button Cross Site Scripting Vulnerability
Severity:high
CVE ID:CVE-2025-31864
| Descripiton:
|
WordPress and WordPress plugins are both products of the WordPress Foundation. WordPress is a blogging platform developed using the PHP language. This platform supports the setup of personal blog websites on servers running PHP and MySQL. A WordPress plugin is an application plugin. The WordPress plugin Beam me up Scotty – Back to Top Button version 1.0.23 and earlier have a cross-site scripting vulnerability. This vulnerability is caused by improper input sanitization, which may lead to stored cross-site scripting. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.