
CVE-2026-25307 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 8theme XStore Core et-core-plugin allows DOM-Based XSS.This issu… https://www.cve.org/CVERecord?id=CVE-2026-25307
Post summary
The text is a concise disclosure of CVE‑2026‑25307, describing a DOM‑based XSS vulnerability in 8theme XStore Core et‑core‑plugin, without mentioning PoC, exploit code, patch, or evidence of active exploitation.
