CVE-2023-25480: WordPress Post and Page Builder by BoldGrid – Visual Drag and Drop Editor Plugin <= 1.24.1 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin <= 1.24.1 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-25480?
CVE-2023-25480 is a Cross-Site Request Forgery (CSRF) vulnerability in the BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin version 1.24.1 and below.
How severe is CVE-2023-25480?
CVE-2023-25480 has a severity score of 8.8, which is considered high.
How does CVE-2023-25480 affect the BoldGrid Post and Page Builder plugin?
CVE-2023-25480 affects the BoldGrid Post and Page Builder plugin version 1.24.1 and below, allowing potential Cross-Site Request Forgery attacks.
Is there a fix available for CVE-2023-25480?
Yes, a fix for CVE-2023-25480 is available. It is recommended to update to a version higher than 1.24.1 of the BoldGrid Post and Page Builder plugin.
Is CVE-2023-25480 related to any Common Weakness Enumeration (CWE)?
Yes, CVE-2023-25480 is related to CWE-352, which is Cross-Site Request Forgery (CSRF).