CVE-2025-31447
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Mar 28, 2025
CWE ID 352
Summary
CVE-2025-31447 is a Cross-Site Request Forgery (CSRF) vulnerability affecting NertWorks All in One Social Share Tools. The flaw allows an attacker to manipulate the actions of a user on a web application, by forging malicious requests on their behalf. This vulnerability has the potential to expose sensitive data or even allow unauthorized actions. Affected versions of NertWorks All in One Social Share Tools range from n/a to 1.26. It is recommended that users upgrade to a patched version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.