Cross-Site Request Forgery Vulnerability in Track Everything by Ethoseo
CVE-2025-53332
7.1HIGH
What is CVE-2025-53332?
A Cross-Site Request Forgery (CSRF) vulnerability in the Track Everything plugin by Ethoseo allows attackers to exploit stored XSS vulnerabilities. This issue affects versions of Track Everything from n/a through 2.0.1, enabling unauthorized actions on behalf of users without their consent, which poses significant security risks.
Affected Version(s)
Track Everything <= 2.0.1