Cross-Site Request Forgery Vulnerability in Everest Backup by Everest Themes
CVE-2025-62992
6.5MEDIUM
What is CVE-2025-62992?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Everest Backup plugin developed by Everest Themes, which can potentially allow an attacker to perform unauthorized actions on behalf of an authenticated user. This vulnerability affects versions prior to 2.3.9, leading to possible path traversal that could expose sensitive information.
Affected Version(s)
Everest Backup 0 <= 2.3.11