CVE-2025-52841: Laundry 2.3.0 - Account Takeover via CSRF
Published Jul 2, 2025
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Laundry on Linux, MacOS allows to perform an Account Takeover. This issue affects Laundry: 2.3.0.
Affected Software
4 affected components
Laundry Laundry
All of the following
Laundry Project Laundry=2.3.0
Any of the following
Apple macOS
Linux Linux kernel
Event History
Jul 2, 2025
CVE Published
via MITRE·04:45 PM
Data Sourced
via MITRE·04:45 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Dec 22, 57948
Event
via NVD·03:07 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-52841?
CVE-2025-52841 is classified as a high severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2025-52841?
To fix CVE-2025-52841, update Laundry to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2025-52841?
CVE-2025-52841 affects Laundry version 2.3.0 on Linux and MacOS platforms.
4
What type of attack can be executed due to CVE-2025-52841?
CVE-2025-52841 allows attackers to perform an Account Takeover via Cross-Site Request Forgery.
5
Is there a workaround for CVE-2025-52841 while waiting for a patch?
Currently, the best workaround for CVE-2025-52841 is to limit user permissions and mitigate CSRF risks until a patch is available.