CSRF Vulnerability in WP Google Review Slider by jgwhite33
CVE-2025-30783

8.2HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
27 March 2025

What is CVE-2025-30783?

A Cross-Site Request Forgery (CSRF) vulnerability in the WP Google Review Slider plugin from jgwhite33 allows malicious actors to perform unauthorized actions, which can lead to SQL injection attacks. This vulnerability affects versions from n/a up to 16.0, posing a risk to users who may have sensitive data compromised through exploited weaknesses in the plugin's security.

Affected Version(s)

WP Google Review Slider <= 16.0

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

astra.r3verii (Patchstack Alliance)
.