CSRF Vulnerability in Codehaveli Bitly URL Shortener by Codehaveli
CVE-2025-30629

4.3MEDIUM

Key Information:

Vendor

WordPress

Vendor
CVE Published:
6 June 2025

What is CVE-2025-30629?

The Codehaveli Bitly URL Shortener is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability that could allow an attacker to execute unwanted actions on behalf of authenticated users. This issue impacts versions up to 1.3.3 of the Bitly URL Shortener, potentially compromising the integrity of user data and operations. It is essential for users to assess their exposure and implement appropriate security measures to safeguard against potential exploitation.

Affected Version(s)

Bitly URL Shortener <= 1.3.3

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Nabil Irawan (Patchstack Alliance)
.