CVE-2025-22300
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Jan 7, 2025
CWE ID 352
Summary
CVE-2025-22300 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the PixelYourSite – Your smart PIXEL (TAG) Manager, from an unknown version up to 10.0.1.2. This issue allows malicious actors to manipulate a user's session, executing unintended actions on their behalf, posing a security risk. Users are advised to update their PixelYourSite plugin to a patched version to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.