CVE-2025-30528
CVSS 3.1 Score 9.3 of 10 (high)
Details
Published Mar 24, 2025
Updated: Mar 27, 2025
CWE ID 352
Summary
CVE-2025-30528 is a serious vulnerability affecting the Awesome Logos plugin for WordPress versions from n/a to 1.2. This issue combines a Cross-Site Request Forgery (CSRF) weakness with the potential for SQL injection. An attacker could exploit the CSRF vulnerability to trick a user into making unintended changes to the affected WordPress installation, potentially leading to SQL injection and broader system compromise. Users are strongly urged to update their plugins to a secure version as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress