CVE-2019-19542: Cridio Listingpro
Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.
The ListingPro theme before v2.0.14.2 for WordPress has Persistent XSS via the Good For field on the new listing submit page.
Affected products
- Cridio Listingpro: before 2.0.14.2 (fixed in 2.0.14.2)
Published 2019-12-26. Last modified 2026-06-17.