
CVE-2025-14076 The iXML – Google XML sitemap generator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'iXML_email' parameter in all versions up to, and… https://www.cve.org/CVERecord?id=CVE-2025-14076
Post summary
The statement discloses that the iXML WordPress plugin suffers from reflected XSS through the iXML_email parameter, but provides no PoC, exploit, patch, or evidence of active exploitation.
