Poll, Survey & Quiz Maker Plugin by Opinion Stage Wordpress plugin versions prior to 19.6.25 contain a stored cross-site scripting (XSS) vulnerability via multiple parameters due to insufficient input validation and output escaping. An unauthenticated attacker can inject arbitrary script into content that executes when a victim views an affected page.
Metrics
Affected Vendors & Products
References
History
Fri, 16 Jan 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 16 Jan 2026 20:30:00 +0000
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-16T21:08:52.376Z
Reserved: 2026-01-16T19:19:40.819Z
Link: CVE-2019-25297
Updated: 2026-01-16T20:58:48.707Z
Status : Received
Published: 2026-01-16T21:15:49.930
Modified: 2026-01-16T21:15:49.930
Link: CVE-2019-25297
No data.
OpenCVE Enrichment
No data.