VYPR
Medium severity5.4NVD Advisory· Published Sep 26, 2019· Updated Jun 17, 2026No known patch

CVE-2015-9425

CVE-2015-9425

Description

The social-locker plugin before 4.2.5 for WordPress has CSRF with resultant XSS via the wp-admin/edit.php?post_type=opanda-item&page=license-manager-sociallocker-next licensekey parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.