Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LeadConnector LeadConnector allows DOM-Based XSS. This issue affects LeadConnector: from n/a through 3.0.2.
We have discovered 955 live websites that are affected by CVE-2025-30893.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 955 live websites (12% of LeadConnector install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 6 versions ( 21% of all versions) |
| 635 websites | |
| 71 websites | |
| 50 websites | |
| 37 websites | |
| 17 websites | |
| 15 websites | |
| 11 websites | |
| 10 websites | |
| 8 websites |
| .com | 682 websites |
| .co.uk | 49 websites |
| .com.au | 44 websites |
| .ca | 23 websites |
| .org | 16 websites |
| .net | 16 websites |
| .co | 8 websites |
| .it | 6 websites |
| .dk | 5 websites |
| .de | 5 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| ****************.com | ***,*** | ||
| ***************.com | ***,*** | ||
| *****************.com | ***,*** | ||
| ******************.com | ***,*** | ||
| ************.com | ***,*** | ||
| ********************.com | *,***,*** | ||
| **************.com | *,***,*** | ||
| ********************.com | *,***,*** | ||
| ****.ie | *,***,*** | ||
| ******.com | *,***,*** |
FAQ