CVE-2025-32264

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 352

Summary

CVE-2025-32264 represents a Cross-Site Request Forgery (CSRF) weakness in Saiful Islam UltraAddons Elementor Lite. This vulnerability allows malicious actors to manipulate user actions on affected websites, potentially leading to unintended modifications or data theft. Saiful Islam UltraAddons Elementor Lite versions ranging from not available to 2.0.0 are susceptible to this issue. Users are advised to update their software to mitigate this risk and secure their online presence.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • UltraAddons Elementor Lite Plugin

Affected Vendors

  • WordPress