๐Ÿ” CVE Alert

CVE-2025-31864

UNKNOWN 0.0

WordPress Beam me up Scotty โ€“ Back to Top Button plugin <= 1.0.23 - Cross Site Scripting (XSS) vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Out the Box Beam me up Scotty beam-me-up-scotty allows Stored XSS.This issue affects Beam me up Scotty: from n/a through <= 1.0.23.

CWE CWE-79
Vendor out the box
Product beam me up scotty
Published Apr 1, 2025
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for out the box beam me up scotty

Be the first to know when new unknown vulnerabilities affecting out the box beam me up scotty are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Out the Box / Beam me up Scotty
0 โ‰ค 1.0.23

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/beam-me-up-scotty/vulnerability/wordpress-beam-me-up-scotty-back-to-top-button-plugin-1-0-23-cross-site-scripting-xss-vulnerability?_s_id=cve

Credits

Webula | Patchstack Bug Bounty Program