6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
Cross-Site Request Forgery (CSRF) vulnerability in HasThemes WP Plugin Manager wp-plugin-manager allows Cross Site Request Forgery.This issue affects WP Plugin Manager: from n/a through <= 1.4.7.
Basic Information
ID
CVE-2025-64271
Source
Patchstack
Published
Nov 13, 2025 at 09:24
Modified
Nov 13, 2025 at 17:58
Affected Product
Vendor
HasThemes
Product
WP Plugin Manager
Version
n/a
Affected Versions
HasThemes WP Plugin Manager n/a