Cross-Site Request Forgery Vulnerability in WP Attire Blocks
CVE-2025-24696
4.3MEDIUM
What is CVE-2025-24696?
A Cross-Site Request Forgery (CSRF) vulnerability exists in WP Attire Blocks, allowing malicious actors to execute unauthorized commands on behalf of authenticated users since version n/a up to 1.9.6. This enables attackers to potentially manipulate the actions of users without their consent, posing a significant risk to the security of WordPress sites utilizing this plugin.
Affected Version(s)
Attire Blocks <= 1.9.6