Cross-Site Request Forgery (CSRF) vulnerability in Zoho Flow Zoho Flow allows Cross Site Request Forgery. This issue affects Zoho Flow: from n/a through 2.14.1.
Metrics
Affected Vendors & Products
Fixes
Solution
Update the WordPress Zoho Flow plugin to the latest available version (at least 2.14.2).
Workaround
No workaround given by the vendor.
References
History
Mon, 22 Sep 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in Zoho Flow Zoho Flow allows Cross Site Request Forgery. This issue affects Zoho Flow: from n/a through 2.14.1. | |
Title | WordPress Zoho Flow Plugin <= 2.14.1 - Cross Site Request Forgery (CSRF) Vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-09-22T18:25:59.396Z
Reserved: 2025-09-17T18:00:53.705Z
Link: CVE-2025-59568

No data.

Status : Received
Published: 2025-09-22T19:16:24.970
Modified: 2025-09-22T19:16:24.970
Link: CVE-2025-59568

No data.

No data.