Author: Angelo Barbosa

CVE-2025-23617 | Oliver Schaal Floatbox Plus Plugin up to 1.4.4 on WordPress cross-site request forgery

A vulnerability was found in Oliver Schaal Floatbox Plus Plugin up to 1.4.4 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery. This vulnerability is known as CVE-2025-23617. The attack can be launched remotely. There is no exploit...

Read More

CVE-2025-23639 | Nazmul Ahsan MDC YouTube Downloader Plugin up to 3.0.0 on WordPress cross-site request forgery

A vulnerability, which was classified as problematic, was found in Nazmul Ahsan MDC YouTube Downloader Plugin up to 3.0.0 on WordPress. This affects an unknown part. The manipulation leads to cross-site request forgery. This vulnerability is uniquely identified as CVE-2025-23639. It is possible to initiate the attack remotely. There is no exploit...

Read More