
CVE-2025-15483 The Link Hopper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘hop_name’ parameter in all versions up to, and including, 2.5 due to insuff… https://www.cve.org/CVERecord?id=CVE-2025-15483
Post summary
CVE‑2025‑15483 exposes a stored XSS vulnerability in the Link Hopper WordPress plugin via the ‘hop_name’ parameter across all versions up to 2.5, with no PoC, exploit, active usage, or patch information provided.


