CVE-2025-31814

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Apr 1, 2025
CWE ID 352

Summary

CVE-2025-31814 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the OwnerRez platform from version n/a through 1.2.0. Malicious actors can exploit this issue to execute unintended actions on a user's account, potentially leading to significant data manipulation or unauthorized transactions. CSRF attacks occur when an attacker tricks a user into making a request to a website, which then carries out the attacker's malicious intent on behalf of the user. This vulnerability underscores the importance of implementing proper CSRF protection mechanisms to safeguard user data and maintain the integrity of web applications.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share