CVE-2025-10135 | WP ViewSTL Plugin up to 1.0 on WordPress Shortcode viewstl cross site scripting
A vulnerability identified as problematic has been detected in WP ViewSTL Plugin up to 1.0 on WordPress. This affects the function viewstl of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-10135. It is possible to initiate the attack remotely. There is no exploit available.