CSRF Vulnerability in WP Copy Media URL by Ashish Ajani
CVE-2025-31583
7.1HIGH
What is CVE-2025-31583?
A Cross-Site Request Forgery (CSRF) vulnerability in the WP Copy Media URL plugin developed by Ashish Ajani allows an attacker to execute unauthorized commands on behalf of a user. This issue can lead to Stored Cross-Site Scripting (XSS), where malicious scripts can be injected and executed within the context of the user’s session. Administrators are advised to update affected versions of the plugin and implement security best practices to mitigate potential exploits.
Affected Version(s)
WP Copy Media URL <= 2.1