Cross-Site Request Forgery Vulnerability in WP Post Hide by Xfinitysoft
CVE-2025-54042
4.3MEDIUM
What is CVE-2025-54042?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WP Post Hide plugin developed by Xfinitysoft. This flaw allows attackers to execute unauthorized actions on behalf of authenticated users without their consent, compromising the security of WordPress sites. Affected versions include any prior to 1.0.9, making it critical for users to update their installations promptly to mitigate potential risks.
Affected Version(s)
WP Post Hide <= 1.0.9