Cross-Site Request Forgery Vulnerability in Funnnny HidePost Plugin
CVE-2025-53310
7.1HIGH
What is CVE-2025-53310?
The Funnnny HidePost plugin is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to carry out unauthorized actions on behalf of authenticated users. This issue poses a serious risk as it can also lead to Reflective Cross-Site Scripting (XSS) attacks under certain circumstances. Affected users are encouraged to update to the latest version to mitigate this vulnerability.
Affected Version(s)
HidePost <= 2.3.8