First published: Wed May 07 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Iqonic Design Graphina allows PHP Local File Inclusion. This issue affects Graphina: from n/a through 3.0.4.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Graphina for WordPress | <=3.0.4 | |
WordPress Graphina plugin | <=3.0.4 |
Update the WordPress Graphina plugin to the latest available version (at least 3.0.5).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-47533 is considered to be a high-severity vulnerability due to its potential for unauthorized access and local file inclusion.
To fix CVE-2025-47533, update the Iqonic Design Graphina plugin to the latest version beyond 3.0.4.
CVE-2025-47533 can enable attacks such as Cross-Site Request Forgery (CSRF) and local file inclusion, potentially compromising the server.
CVE-2025-47533 affects Iqonic Design Graphina versions up to and including 3.0.4.
In the context of CVE-2025-47533, Cross-Site Request Forgery allows an attacker to trick a victim into executing unintended actions on a web application where they are authenticated.