cleantalk
Vulnerabilities and Security Researches

AF Tell a Friend, CVE-2025-31404

CVE, Research URL

CVE-2025-31404

Application

AF Tell a Friend

Published on
Apr 09, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in Wladyslaw Madejczyk AF Tell a Friend allows Stored XSS. This issue affects AF Tell a Friend: from n/a through 1.4.
Affected versions
Min -, max 1.4.
Status
vulnerable