CVE-2025-14792 | Key Figures Plugin up to 1.1 on WordPress kf_field_figure_default_color_render cross site scripting
A vulnerability was found in Key Figures Plugin up to 1.1 on WordPress and classified as problematic. The affected element is the function kf_field_figure_default_color_render. The manipulation results in cross site scripting.
This vulnerability is known as CVE-2025-14792. It is possible to launch the attack remotely. No exploit is available.