CVE-2025-49290: Jory Hogeveen Off-Canvas Sidebars & Menus Slidebars

High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jory Hogeveen Off-Canvas Sidebars & Menus (Slidebars) off-canvas-sidebars allows Reflected XSS.This issue affects Off-Canvas Sidebars & Menus (Slidebars): from n/a through <= 0.5.8.4.

Affected products

  • Jory Hogeveen Off-Canvas Sidebars & Menus Slidebars: up to and including 0.5.8.4

Published 2025-06-27. Last modified 2026-06-17.