CVE-2025-53316: WordPress WP GDPR Cookie Consent plugin <= 1.0.0 - Cross Site Request Forgery (CSRF) Vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Shahjahan Jewel WP GDPR Cookie Consent wp-gdpr-cookie-consent allows Stored XSS.This issue affects WP GDPR Cookie Consent: from n/a through <= 1.0.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53316?
CVE-2025-53316 is classified as a moderate severity vulnerability due to its potential to allow stored cross-site scripting (XSS) through CSRF.
How do I fix CVE-2025-53316?
To fix CVE-2025-53316, update the WP GDPR Cookie Consent plugin to a version higher than 1.0.0.
What types of attacks are possible with CVE-2025-53316?
CVE-2025-53316 can be exploited to carry out cross-site request forgery and potentially lead to stored XSS attacks.
Which versions of WP GDPR Cookie Consent are affected by CVE-2025-53316?
CVE-2025-53316 affects all versions of WP GDPR Cookie Consent up to and including 1.0.0.
Who is primarily affected by CVE-2025-53316?
Website owners using the WP GDPR Cookie Consent plugin in WordPress versions up to 1.0.0 are primarily affected by CVE-2025-53316.