CVE-2025-23660
Cross-Site Request Forgery (CSRF) vulnerability in Walter Cerrudo MFPlugin allows Stored XSS.This issue affects MFPlugin: from n/a through 1.3.
More information : https://patchstack.com/database/wordpress/plugin/mfplugin/vulnerability/wordpress-mfplugin-plugin-1-3-csrf-to-cross-site-scripting-vulnerability?_s_id=cve
