First published: Tue Jan 07 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Nik Chankov Autocompleter allows Stored XSS.This issue affects Autocompleter: from n/a through 1.3.5.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nik Chankov Autocompleter | <=1.3.5.2 | |
WordPress Autocompleter Plugin | <=1.3.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-22325 is classified as a moderate severity Cross-Site Request Forgery (CSRF) vulnerability.
To fix CVE-2025-22325, update Nik Chankov Autocompleter to version 1.3.5.3 or later.
CVE-2025-22325 affects Nik Chankov Autocompleter versions up to and including 1.3.5.2.
Yes, CVE-2025-22325 impacts the WordPress Autocompleter plugin versions up to and including 1.3.5.2.
CVE-2025-22325 is a Cross-Site Request Forgery (CSRF) vulnerability that can lead to Stored XSS.