PT-2025-39562 · WordPress · Instapage Plugin

Published

2025-09-26

·

Updated

2025-09-26

·

CVE-2025-60115

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Instapage Plugin versions through 3.5.12
Description A Cross-Site Request Forgery (CSRF) issue exists in the Instapage Plugin. This allows attackers to perform actions on behalf of unsuspecting users.
Recommendations Update Instapage Plugin to a version later than 3.5.12.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-60115

Affected Products

Instapage Plugin