CVE-2025-48314
Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in salubrio Add Code To Head allows Stored XSS. This issue affects Add Code To Head: from n/a through 1.17.
More information : https://patchstack.com/database/wordpress/plugin/add-code-to-head/vulnerability/wordpress-add-code-to-head-plugin-1-17-cross-site-scripting-xss-vulnerability?_s_id=cve