CVE-2025-7963 | tymotey Easy Waveform Player Plugin up to 1.2.2 on WordPress Shortcode shortcode_easywaveformplayer cross site scripting
A vulnerability has been found in tymotey Easy Waveform Player Plugin up to 1.2.2 on WordPress and classified as problematic. Impacted is the function shortcode_easywaveformplayer of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2025-7963. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More