Cross-Site Request Forgery Vulnerability in Eli Related Posts Footer Links and Widget
CVE-2025-47514

7.1HIGH

What is CVE-2025-47514?

A Cross-Site Request Forgery (CSRF) vulnerability in Eli's Related Posts Footer Links and Widget compromises the security of users by allowing attackers to execute unauthorized actions on behalf of a victim user. Specifically, this vulnerability can lead to Stored Cross-Site Scripting (XSS), impacting the integrity and safety of the web application. Affected versions range from n/a to 1.2.04.20, emphasizing the need for users to update their installations to mitigate potential risks.

Affected Version(s)

ELI's Related Posts Footer Links and Widget <= 1.2.04.20

References

CVSS V3.1

Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

johska (Patchstack Alliance)
.