Cross-Site Request Forgery in Recent Posts Slider Responsive by Dilemma123
CVE-2025-28966
7.1HIGH
What is CVE-2025-28966?
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Recent Posts Slider Responsive plugin by Dilemma123. This flaw allows attackers to perform unauthorized actions on behalf of users, leading to the risk of Stored XSS. The issue affects versions up to 1.0.1, making it critical for users of this plugin to apply updates and implement security best practices to mitigate potential threats.
Affected Version(s)
Recent Posts Slider Responsive <= 1.0.1