Improper Control of Generation of Code ('Code Injection') vulnerability in NotFound Visual Text Editor allows Remote Code Inclusion. This issue affects Visual Text Editor: from n/a through 1.2.1.
Metrics
Affected Vendors & Products
References
History
Wed, 26 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 26 Mar 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Generation of Code ('Code Injection') vulnerability in NotFound Visual Text Editor allows Remote Code Inclusion. This issue affects Visual Text Editor: from n/a through 1.2.1. | |
| Title | WordPress Visual Text Editor plugin <= 1.2.1 - Remote Code Execution (RCE) vulnerability | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-03-26T14:24:23.579Z
Updated: 2025-03-26T14:59:05.138Z
Reserved: 2025-03-11T08:09:09.176Z
Link: CVE-2025-28893
Updated: 2025-03-26T14:59:01.227Z
Status : Awaiting Analysis
Published: 2025-03-26T15:16:15.873
Modified: 2025-03-27T16:45:27.850
Link: CVE-2025-28893
No data.