CVE-2025-32112

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 352

Summary

CVE-2025-32112 is a Cross-Site Request Forgery (CSRF) vulnerability affecting OTWthemes Sidebar Manager Light. This issue allows malicious actors to perform unintended actions on an affected website, by tricking the user into clicking a specifically crafted link. The CSRF flaw exists in Sidebar Manager Light versions from n/a through 1.1.8, posing a significant risk for websites using this plugin. Successful exploitation could result in unauthorized modifications or data theft, underscoring the importance of updating Sidebar Manager Light to a patched version as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share