Cross-Site Request Forgery in SpeakPipe Voicemail Plugin
CVE-2025-30619
5.4MEDIUM
What is CVE-2025-30619?
The SpeakPipe Voicemail for Websites plugin is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability, allowing unauthorized actions to be performed on behalf of an authenticated user without their consent. This security flaw affects versions from n/a up to 0.2, posing significant risks to user accounts and interactions within WordPress sites that utilize this plugin. Administrators are encouraged to implement security updates and mitigate potential exploits.
Affected Version(s)
SpeakPipe <= 0.2