CVE-2025-31447

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Mar 28, 2025
CWE ID 352

Summary

CVE-2025-31447 is a Cross-Site Request Forgery (CSRF) vulnerability affecting NertWorks All in One Social Share Tools. The flaw allows an attacker to manipulate the actions of a user on a web application, by forging malicious requests on their behalf. This vulnerability has the potential to expose sensitive data or even allow unauthorized actions. Affected versions of NertWorks All in One Social Share Tools range from n/a to 1.26. It is recommended that users upgrade to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share