cleantalk
Vulnerabilities and Security Researches

WP Cookie Consent ( for GDPR, CCPA & ePrivacy ), CVE-2025-49285

CVE, Research URL

CVE-2025-49285

Published on
Jun 06, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in WP Legal Pages WP Cookie Notice for GDPR, CCPA & ePrivacy Consent allows Cross Site Request Forgery. This issue affects WP Cookie Notice for GDPR, CCPA & ePrivacy Consent: from n/a through 3.8.0.
Affected versions
Min -, max 3.8.1.
Status
vulnerable