WPIntell

Source evidence

Reported Vulnerability

Nested Pages · support · 2025-11-08T15:44:00+00:00

complaintsentiment
highseverity
0.79relevance
1replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

5 / 31 rows with source links

16.1% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

26 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
egsteam unresolved
Apparently, this vulnerability was found with the plugin back in March. Is this something that will be fixed? For now, I’ve deactivated the plugin on all sites that use it. https://research.cleantalk.org/reports/search/wp-nested-pages/CVE-2025-0718 This has been fixed in v3.2.13, see https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/wp-nested-pages/nested-pages-3212-authenticated-contributor-stored-cross-site-scripting

Comments

1 shown
llmarlou 2025-12-08T13:56:00+00:00

This has been fixed in v3.2.13, see https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/wp-nested-pages/nested-pages-3212-authenticated-contributor-stored-cross-site-scripting