
CVE-2025-15396 The Library Viewer WordPress plugin before 3.2.0 does not sanitise and escape some parameters before outputting them back in the page, leading to a Reflected Cross-Si… https://www.cve.org/CVERecord?id=CVE-2025-15396
Post summary
The post notes a reflected XSS flaw in the Library Viewer WordPress plugin caused by unsanitized parameters, but provides no PoC, exploit, or patch details.


