{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-15T01:17:14.803","vulnerabilities":[{"cve":{"id":"CVE-2025-26749","sourceIdentifier":"audit@patchstack.com","published":"2025-04-15T22:15:17.210","lastModified":"2026-04-01T17:18:42.397","vulnStatus":"Awaiting Analysis","cveTags":[],"descriptions":[{"lang":"en","value":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Additional Custom Product Tabs for WooCommerce product-tabs-for-woocommerce allows Stored XSS.This issue affects Additional Custom Product Tabs for WooCommerce: from n\/a through <= 1.7.0."},{"lang":"es","value":"La vulnerabilidad de neutralización incorrecta de la entrada durante la generación de páginas web ('Cross-site Scripting') en WPFactory Additional Custom Product Tabs for WooCommerce permite XSS almacenado. Este problema afecta a las Pestañas de Producto Personalizadas Adicionales de WooCommerce desde n\/d hasta la versión 1.7.0."}],"metrics":{},"weaknesses":[{"source":"audit@patchstack.com","type":"Secondary","description":[{"lang":"en","value":"CWE-79"}]}],"references":[{"url":"https:\/\/patchstack.com\/database\/Wordpress\/Plugin\/product-tabs-for-woocommerce\/vulnerability\/wordpress-additional-custom-product-tabs-for-woocommerce-plugin-1-7-0-cross-site-scripting-xss-vulnerability?_s_id=cve","source":"audit@patchstack.com"}]}}]}