CVE-2025-28861
Description
Cross-Site Request Forgery (CSRF) vulnerability in bhzad WP jQuery Persian Datepicker wpjqp-datepicker allows Stored XSS.This issue affects WP jQuery Persian Datepicker: from n/a through <= 0.1.0.
CWE
- CWE-352 — Cross-Site Request Forgery (CSRF)
Affected
- bhzad / WP jQuery Persian Datepicker — v=0 ≤0.1.0 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/28xxx/CVE-2025-28861.json