CVE-2025-23446
WordPress WP SpaceContent plugin <= 0.4.5 - CSRF to Stored Cross Site Scripting (XSS) vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Cross-Site Request Forgery (CSRF) vulnerability in KokoenDE WP SpaceContent wp-spacecontent allows Stored XSS.This issue affects WP SpaceContent: from n/a through <= 0.4.5.
| CWE | CWE-352 |
| Vendor | kokoende |
| Product | wp spacecontent |
| Published | Mar 3, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for kokoende wp spacecontent
Be the first to know when new unknown vulnerabilities affecting kokoende wp spacecontent are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
KokoenDE / WP SpaceContent
0 โค 0.4.5
References
Credits
SOPROBRO | Patchstack Bug Bounty Program