CVE-2025-49422 | Aelora iframe Wrapper Plugin up to 0.1.1 on WordPress cross site scripting
A vulnerability classified as problematic was found in Aelora iframe Wrapper Plugin up to 0.1.1 on WordPress. This affects an unknown part. Executing manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2025-49422. It is possible to launch the attack remotely. No exploit is available.