Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zootemplate Cerato allows Reflected XSS.This issue affects Cerato: from n/a through 2.2.18.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Apr 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Zootemplate Zootemplate cerato |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Zootemplate Zootemplate cerato |
Fri, 10 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Apr 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zootemplate Cerato allows Reflected XSS.This issue affects Cerato: from n/a through 2.2.18. | |
| Title | WordPress Cerato theme <= 2.2.18 - Reflected Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2026-04-10T13:25:31.611Z
Updated: 2026-04-10T14:07:44.099Z
Reserved: 2025-09-06T04:44:19.611Z
Link: CVE-2025-58920
Updated: 2026-04-10T14:07:39.432Z
Status : Received
Published: 2026-04-10T14:16:25.283
Modified: 2026-04-10T14:16:25.283
Link: CVE-2025-58920
No data.