CVE-2025-22703
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Feb 3, 2025
CWE ID 352
Summary
CVE-2025-22703 is a Cross-Site Request Forgery (CSRF) vulnerability discovered in the manuelvicedo Forge – Front-End Page Builder. Maliciously crafted requests can exploit this issue, leading to Stored Cross-Site Scripting (XSS) attacks against users. The vulnerability affects versions of Forge – Front-End Page Builder ranging from not available to 1.4.6. To mitigate this risk, users are advised to upgrade to the latest patch level to protect their systems from these attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share