AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-25027

MEDIUM · CVSS 6.1 EPSS 0.88%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-01-03 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-25027
Severity
MEDIUM
CVSS
6.1
EPSS
0.88%
WordPress

Original NVD Description

The PowerPack Addons for Elementor WordPress plugin before 2.6.2 does not escape the tab parameter before outputting it back in an attribute in the admin dashboard, leading to a Reflected Cross-Site Scripting issue