Medium 6.5 Unfixed
2025-09-22≤ 1.12.06
xili-tidy-tags <= 1.12.06 - Authenticated (Contributor+) Stored Cross-Site Scripting
Minimum safe version
1.12.05
Update to 1.12.05 or later to address 2 fixable vulnerabilities
xili-tidy-tags <= 1.12.06 - Authenticated (Contributor+) Stored Cross-Site Scripting
WordPress xili-tidy-tags plugin <= 1.12.06 - Reflected Cross Site Scripting (XSS) vulnerability
CVE-2024-9357
CVE-2022-47448