CVE-2025-53228Disclosure

LOWCVSS 7.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jezza101 bbpress Simple Advert Units bbpress-simple-advert-units allows Reflected XSS.This issue affects bbpress Simple Advert Units: from n/a through <= 0.41.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-02-22); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-02-22: 1Mentions · 2026-02-25: 1Technical Details · 2026-02-22: 1Technical Details · 2026-02-25: 102-2202-25
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-53228 (CVSS:7.1, HIGH) is Awaiting Analysis. Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jezza101 bbpress S..https://nvd.nist.gov/vuln/detail/CVE-2025-53228 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post announces CVE-2025-53228, a high‑severity XSS vulnerability in jezza101 bbpress, noting its CVSS score of 7.1 and that it is awaiting analysis.

    0000032
    172 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-53228 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jezza101 bbpress Simple Advert Units bbpress-simple-advert-units… https://www.cve.org/CVERecord?id=CVE-2025-53228

    Post summary

    The text links to a CVE record for an XSS vulnerability in the bbPress Simple Advert Units plugin, providing only the basic vulnerability classification without additional details on PoC, exploit, or patch.

    00000251
    56.5K followersView on X

Explore more