PatchSiren

Vernon Systems Limited CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Vernon Systems Limited CVE published 2026-01-08

CVE-2025-67930

A Cross-site Scripting (XSS) vulnerability exists in the eHive Search plugin for WordPress, affecting versions from n/a through 2.5.0. This issue allows for Reflected XSS attacks. Defenders and security teams responsible for WordPress installations with the eHive Search plugin should assess exposure and prioritize remediation. The vulnerability could potentially impact system integrity and user data confi [truncated]