๐Ÿ” CVE Alert

CVE-2025-58262

UNKNOWN 0.0

WordPress Sweet Energy Efficiency plugin <= 1.0.8 - Cross Site Request Forgery (CSRF) vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Cross-Site Request Forgery (CSRF) vulnerability in WPDirectoryKit Sweet Energy Efficiency sweet-energy-efficiency allows Stored XSS.This issue affects Sweet Energy Efficiency: from n/a through <= 1.0.8.

CWE CWE-352
Vendor wpdirectorykit
Product sweet energy efficiency
Published Sep 22, 2025
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for wpdirectorykit sweet energy efficiency

Be the first to know when new unknown vulnerabilities affecting wpdirectorykit sweet energy efficiency are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

WPDirectoryKit / Sweet Energy Efficiency
0 โ‰ค 1.0.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/sweet-energy-efficiency/vulnerability/wordpress-sweet-energy-efficiency-plugin-1-0-6-cross-site-request-forgery-csrf-vulnerability?_s_id=cve

Credits

Nguyen Xuan Chien | Patchstack Bug Bounty Program