First published: Thu Jan 16 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in linickx root Cookie allows Cross Site Request Forgery. This issue affects root Cookie: from n/a through 1.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
linickx root Cookie | <=1.6 | |
WordPress root Cookie plugin | <=1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23815 is a Cross-Site Request Forgery (CSRF) vulnerability that poses a significant risk as it can allow unauthorized actions to be performed on behalf of authenticated users.
To fix CVE-2025-23815, update the linickx root Cookie or the WordPress root Cookie plugin to version 1.6 or later.
CVE-2025-23815 affects linickx root Cookie versions up to and including 1.6 and the WordPress root Cookie plugin versions up to and including 1.6.
In the context of CVE-2025-23815, Cross-Site Request Forgery is a type of attack that tricks an authenticated user into submitting a malicious request, potentially compromising their account.
Yes, CVE-2025-23815 affects the authentication process by allowing attackers to execute actions as an authenticated user without their knowledge.