Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.5
CVE-2025-31733: Boot Div WP Sitemap allows hackers to inject malicious code into websites
CVE-2025-31733 · published 1 year ago
Summary
A security weakness in Boot Div WP Sitemap allows hackers to inject malicious code into websites, which can lead to unauthorized access and data theft. If left unpatched, this vulnerability can put your website and its users at risk. We recommend updating to the latest version of Boot Div WP Sitemap to fix this issue.
Original advisory text
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Boot Div WP Sitemap allows Stored XSS. This issue affects WP Sitemap: from n/a through 1.0.0.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Boot Div WP Sitemap allows Stored XSS. This issue affects WP Sitemap: from n/a through 1.0.0.
Severity
6.5
Medium
CVSS 3.1: 6.5 (NVD)
Exploitation
EPSS <1%
Type
CWE-79Cross-site Scripting (XSS)
Timeline
Published1 Apr 2025
Updated15 Aug 2026
First seen7 Mar 2026
Sources
CVE-2025-31733 · NVD
Monitor software like this
Free during beta