Author: Angelo Barbosa

CVE-2025-23639 | Nazmul Ahsan MDC YouTube Downloader Plugin up to 3.0.0 on WordPress cross-site request forgery

A vulnerability, which was classified as problematic, was found in Nazmul Ahsan MDC YouTube Downloader Plugin up to 3.0.0 on WordPress. This affects an unknown part. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2025-23639. It is possible to initiate the attack remotely. There is no exploit...

Read More

CVE-2025-23560 | Elke Hinze & Plumeria Web Design Web Testimonials Plugin up to 1.2 on WordPress cross-site request forgery

A vulnerability, which was classified as problematic, has been found in Elke Hinze & Plumeria Web Design Web Testimonials Plugin up to 1.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery. This vulnerability is handled as CVE-2025-23560. The attack may be launched remotely. There is no exploit...

Read More

CVE-2025-23470 | X Villamuera Visit Site Link Enhanced Plugin up to 1.0 on WordPress cross-site request forgery

A vulnerability has been found in X Villamuera Visit Site Link Enhanced Plugin up to 1.0 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery. This vulnerability is known as CVE-2025-23470. The attack can be launched remotely. There is no exploit...

Read More

CVE-2025-23471 | Andy Chapman ECT Add to Cart Button Plugin up to 1.4 on WordPress cross-site request forgery

A vulnerability, which was classified as problematic, was found in Andy Chapman ECT Add to Cart Button Plugin up to 1.4 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery. This vulnerability is traded as CVE-2025-23471. It is possible to launch the attack remotely. There is no exploit...

Read More