8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Cross-Site Request Forgery (CSRF) vulnerability in iThemes ServerBuddy by PluginBuddy.Com allows Object Injection.This issue affects ServerBuddy by PluginBuddy.Com: from n/a through 1.0.5.
Basic Information
ID
CVE-2025-49895
Source
Patchstack
Published
Aug 16, 2025 at 02:34
Affected Product
Vendor
iThemes
Product
ServerBuddy by PluginBuddy.com
Version
n/a
Affected Versions
iThemes ServerBuddy by PluginBuddy.com n/a