CVE-2025-12696

The HelloLeads CRM Form Shortcode WordPress plugin through 1.0 does not have authorisation and CSRF check when resetting its settings, allowing unauthenticated users to reset them
Configurations

No configuration.

History

No history.

Information

Published : 2025-12-14 06:15

Updated : 2026-06-17 08:32


NVD link : CVE-2025-12696

Mitre link : CVE-2025-12696

CVE.ORG link : CVE-2025-12696


JSON object : View

Products Affected

No product.

CWE

No CWE.