CVE-2025-22735
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Steve Burge WordPress Tag Cloud Plugin – Tag Groups tag-groups allows Reflected XSS.This issue affects WordPress Tag Cloud Plugin – Tag Groups: from n/a through <= 2.0.4.
CWE
- CWE-79 — Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Affected
- Steve Burge / WordPress Tag Cloud Plugin – Tag Groups — v=0 ≤2.0.4 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/22xxx/CVE-2025-22735.json