CVE-2025-23676
Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in NotFound LH Email allows Reflected XSS. This issue affects LH Email: from n/a through 1.12.
More information : https://patchstack.com/database/wordpress/plugin/lh-email/vulnerability/wordpress-lh-email-plugin-1-12-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve
