CVE-2025-25769: CSRF
Published Feb 21, 2025
·Updated
Wangmarket v4.10 to v5.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /controller/UserController.java.
Affected Software
2 affected components
Wangmarket Wangmarket>=4.10<=5.0
Wang.market Wangmarket>=4.10<=5.0
Event History
Feb 21, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25769?
CVE-2025-25769 has been classified as a high-severity vulnerability due to its potential impact on user security.
2
How do I fix CVE-2025-25769?
To fix CVE-2025-25769, upgrade Wangmarket to a version higher than 5.0 where the CSRF vulnerability has been addressed.
3
What components are affected by CVE-2025-25769?
CVE-2025-25769 specifically affects the /controller/UserController.java component in Wangmarket versions 4.10 to 5.0.
4
What type of vulnerability is CVE-2025-25769?
CVE-2025-25769 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
What versions of Wangmarket are affected by CVE-2025-25769?
CVE-2025-25769 affects Wangmarket versions from 4.10 up to version 5.0.