CVE-2025-49407 | favethemes Houzez Plugin up to 4.1.1 on WordPress cross site scripting
A vulnerability was found in favethemes Houzez Plugin up to 4.1.1 on WordPress and classified as problematic. Affected is an unknown function. The manipulation results in cross site scripting.
This vulnerability was named CVE-2025-49407. The attack may be performed from a remote location. There is no available exploit.