CVE-2025-2314 | User Profile Builder Plugin up to 3.13.5/3.13.6/3.13.7 on WordPress Shortcode cross site scripting
A vulnerability, which was classified as problematic, was found in User Profile Builder Plugin up to 3.13.5/3.13.6/3.13.7 on WordPress. Affected is an unknown function of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-2314. It is possible to launch the attack remotely. There is no exploit available.