First published: Thu Apr 24 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Codebangers All in One Time Clock Lite allows Cross Site Request Forgery. This issue affects All in One Time Clock Lite: from n/a through 1.3.324.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress All in One Time Clock Lite | <=1.3.324 | |
WordPress All in One Time Clock Lite | <=1.3.324 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-46513 is considered medium due to the potential for Cross-Site Request Forgery attacks.
To fix CVE-2025-46513, update the All in One Time Clock Lite plugin to the latest version that addresses the CSRF vulnerability.
CVE-2025-46513 affects the All in One Time Clock Lite plugin versions up to and including 1.3.324.
CVE-2025-46513 is a Cross-Site Request Forgery (CSRF) vulnerability.
The vendor for CVE-2025-46513 is Codebangers, associated with the All in One Time Clock Lite plugin.