CVE-2025-15440 | iONE360 Configurator Plugin up to 2.0.57 on WordPress Contact Form Parameter cross site scripting
A vulnerability described as problematic has been identified in iONE360 Configurator Plugin up to 2.0.57 on WordPress. This impacts an unknown function of the component Contact Form Parameter Handler. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2025-15440. It is possible to launch the attack remotely. No exploit is available.