Vulnerabilities > Webmaster Source > Wp125 > 1.5.0

DATE CVE VULNERABILITY TITLE RISK
2022-01-24 CVE-2021-25073 Cross-Site Request Forgery (CSRF) vulnerability in Webmaster-Source Wp125
The WP125 WordPress plugin before 1.5.5 does not have CSRF checks in various action, for example when deleting an ad, allowing attackers to make a logged in admin delete them via a CSRF attack
6.8