Medium severity5.3NVD Advisory· Published Aug 19, 2025· Updated Jul 5, 2026
CVE-2025-51529
CVE-2025-51529
Description
Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29 allows remote attackers to cause a denial of service (database server resource exhaustion) via unlimited database write operations to the wp_ajax_nopriv_cacsp_insert_consent_data endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:followmedarling:cookies_and_content_security_policy:*:*:*:*:*:wordpress:*:*Range: <=2.29
- jonkastonka/jonkastonka Cookies and Content Security Policy plugindescription
- Range: <=2.29
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.