CVE-2025-28976 | dsrodzin Email Address Security by WebEmailProtector Plugin cross site scripting (EUVD-2025-19970)
A vulnerability has been found in dsrodzin Email Address Security by WebEmailProtector Plugin up to 3.3.6 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-28976. The attack can be initiated remotely. There is no exploit available.