vulnerability
WordPress Theme: listingpro: CVE-2019-19540: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | Nov 29, 2019 | Dec 8, 2025 | Dec 8, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Nov 29, 2019
Added
Dec 8, 2025
Modified
Dec 8, 2025
Description
The ListingPro theme before v2.0.14.5 for WordPress has Reflected XSS via the What field on the homepage.
Solution
listingpro-theme-cve-2019-19540
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.