CVE-2026-25453
Advanced iFrame
Minimum safe version
2026.0
Update to 2026.0 or later to address 13 fixable vulnerabilities
CVE-2026-25412
Advanced iFrame <= 2025.6 - Authenticated (Contributor+) Stored Cross-Site Scripting
Advanced iFrame <= 2025.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Advanced iFrame <= 2025.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
Advanced iFrame <= 2024.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Host Header
WordPress Advanced iFrame Plugin <= 2024.5 is vulnerable to Broken Access Control
WordPress Advanced iFrame Plugin <= 2024.3 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-32079
CVE-2024-1341
CVE-2024-24870
CVE-2023-7069
WordPress Advanced iFrame Plugin <= 2023.8 is vulnerable to Cross Site Scripting (XSS)
WordPress Advanced iFrame Plugin <= 2023.8 is vulnerable to Cross Site Scripting (XSS)