CVE-2025-3488 | WPML Multilingual CMS Plugin up to 4.7.3 on WordPress Shortcode wpml_language_switcher cross site scripting
A vulnerability was found in WPML Multilingual CMS Plugin up to 4.7.3 on WordPress. It has been rated as problematic. This issue affects the function wpml_language_switcher of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-3488. The attack may be initiated remotely. There is no exploit available.