CVE-2025-62886: WordPress Pricing Table builder plugin <= 1.5.3 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in wpdevart Pricing Table builder wpdevart-pricing-table allows Stored XSS.This issue affects Pricing Table builder: from n/a through <= 1.5.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62886?
CVE-2025-62886 has a high severity due to its potential for Cross-Site Request Forgery (CSRF) and stored Cross-Site Scripting (XSS) vulnerabilities.
How do I fix CVE-2025-62886?
To fix CVE-2025-62886, update the wpdevart Pricing Table builder plugin to the latest version that is above 1.5.1.
Which software versions are affected by CVE-2025-62886?
CVE-2025-62886 affects the wpdevart Pricing Table builder plugin versions up to and including 1.5.1.
What type of vulnerability is CVE-2025-62886?
CVE-2025-62886 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
What are the risks associated with CVE-2025-62886?
The risks associated with CVE-2025-62886 include unauthorized actions being performed on behalf of users, which can lead to data theft or manipulation.