Cross-Site Request Forgery Vulnerability in Ultimate AJAX Login Plugin by Samer Bechara
CVE-2025-58854
7.1HIGH
What is CVE-2025-58854?
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Ultimate AJAX Login plugin developed by Samer Bechara. This security issue allows attackers to initiate unauthorized actions on behalf of authenticated users, potentially leading to unwanted changes or data exposure. Affected versions range from n/a to 1.2.1, underscoring the importance for users to update to secure versions to mitigate risk.
Affected Version(s)
Ultimate AJAX Login <= 1.2.1