cleantalk
Vulnerabilities and Security Researches

Custom Posts Order, CVE-2025-32645

CVE, Research URL

CVE-2025-32645

Application

Custom Posts Order

Published on
Apr 09, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in Hiren Patel Custom Posts Order allows Stored XSS. This issue affects Custom Posts Order: from n/a through 4.4.
Affected versions
Min -, max 4.4.
Status
vulnerable