CVE-2025-48340
WordPress User Profile Meta Manager plugin <= 1.02 - CSRF to Privilege Escalation vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Cross-Site Request Forgery (CSRF) vulnerability in Danny Vink User Profile Meta Manager user-profile-meta allows Privilege Escalation.This issue affects User Profile Meta Manager: from n/a through <= 1.02.
| CWE | CWE-352 |
| Vendor | danny vink |
| Product | user profile meta manager |
| Published | May 19, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for danny vink user profile meta manager
Be the first to know when new unknown vulnerabilities affecting danny vink user profile meta manager are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Danny Vink / User Profile Meta Manager
0 โค 1.02
References
Credits
chuck | Patchstack Bug Bounty Program