CVE-2025-1064 | xootix Login Signup Popup Plugin up to 2.8.5 on WordPress Shortcode xoo_el_action cross site scripting
A vulnerability was found in xootix Login Signup Popup Plugin up to 2.8.5 on WordPress and classified as problematic. This issue affects the function xoo_el_action of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-1064. The attack may be initiated remotely. There is no exploit available.