CVE-2025-58984Cross-site Scripting in Welcart Welcart E-commerce

Severity
N/A
No vector
EPSS
0.0%
top 90.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 9

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in info@welcart Welcart e-Commerce usc-e-shop allows Stored XSS.This issue affects Welcart e-Commerce: from n/a through <= 2.11.20.

Affected Packages1 packages

🔴Vulnerability Details

2
CVEList
WordPress Welcart e-Commerce Plugin <= 2.11.20 - Cross Site Scripting (XSS) Vulnerability2025-09-09
GHSA
GHSA-99gh-pgpq-v3fq: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nanbu Welcart e-Commerce allows Stored XSS2025-09-09
CVE-2025-58984 — Cross-site Scripting | cvebase