CVE-2025-58199: WordPress Fastly plugin <= 1.2.28 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Fastly Fastly allows Cross Site Request Forgery. This issue affects Fastly: from n/a through 1.2.28.
Other sources
Cross-Site Request Forgery (CSRF) vulnerability in Fastly Fastly fastly allows Cross Site Request Forgery.This issue affects Fastly: from n/a through <= 1.2.28.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58199?
The severity of CVE-2025-58199 is categorized as high due to its potential impact on system security.
How do I fix CVE-2025-58199?
To fix CVE-2025-58199, upgrade Fastly to version 1.2.29 or later to eliminate the Cross-Site Request Forgery vulnerability.
Which versions of Fastly are affected by CVE-2025-58199?
CVE-2025-58199 affects all versions of Fastly from n/a through 1.2.28.
Does CVE-2025-58199 affect the WordPress Fastly Plugin?
Yes, CVE-2025-58199 affects the WordPress Fastly Plugin up to version 1.2.28.
What kind of attack does CVE-2025-58199 enable?
CVE-2025-58199 enables Cross-Site Request Forgery (CSRF) attacks which can compromise user actions on the application.