First published: Mon Mar 24 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in hotvanrod AdSense Privacy Policy allows Stored XSS. This issue affects AdSense Privacy Policy: from n/a through 1.1.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress AdSense Privacy Policy | <=1.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30578 has a high severity rating due to its potential for Cross-Site Request Forgery leading to Stored XSS attacks.
To fix CVE-2025-30578, update the WordPress AdSense Privacy Policy plugin to version 1.1.2 or later.
CVE-2025-30578 affects the WordPress AdSense Privacy Policy plugin versions up to and including 1.1.1.
CVE-2025-30578 is a Cross-Site Request Forgery (CSRF) vulnerability that allows for Stored XSS.
Users of the WordPress AdSense Privacy Policy plugin, particularly those using versions 1.1.1 and below, are impacted by CVE-2025-30578.