Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28183 | Cross-Site Request Forgery (CSRF) vulnerability in Pektsekye Year Make Model Search for WooCommerce allows Cross Site Request Forgery. This issue affects Year Make Model Search for WooCommerce: from n/a through 1.0.11. |
Solution
Update the WordPress Year Make Model Search for WooCommerce plugin to the latest available version (at least 1.0.12).
Workaround
No workaround given by the vendor.
Mon, 19 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 19 May 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Pektsekye Year Make Model Search for WooCommerce allows Cross Site Request Forgery. This issue affects Year Make Model Search for WooCommerce: from n/a through 1.0.11. | |
| Title | WordPress Year Make Model Search for WooCommerce plugin <= 1.0.11 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-05-19T15:17:37.066Z
Reserved: 2025-05-19T14:13:16.807Z
Link: CVE-2025-48265
Updated: 2025-05-19T15:08:08.479Z
Status : Awaiting Analysis
Published: 2025-05-19T15:15:30.157
Modified: 2025-05-21T20:25:33.823
Link: CVE-2025-48265
No data.
OpenCVE Enrichment
No data.
EUVD