VYPR
Unrated severityNVD Advisory· Published Aug 19, 2025· Updated Aug 19, 2025

CVE-2025-51529

CVE-2025-51529

Description

Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29 allows remote attackers to cause a denial of service (database server resource exhaustion) via unlimited database write operations to the wp_ajax_nopriv_cacsp_insert_consent_data endpoint.

Affected products

1
  • jonkastonka/jonkastonka Cookies and Content Security Policy plugindescription

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.