PT-2025-39562 · WordPress · Instapage Plugin

Published

2025-09-26

·

Updated

2025-09-26

·

CVE-2025-60115

CVSS v3.1
4.3
VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

**Name of the Vulnerable Software and Affected Versions**

Instapage Plugin versions through 3.5.12

**Description**

A Cross-Site Request Forgery (CSRF) issue exists in the Instapage Plugin. This allows attackers to perform actions on behalf of unsuspecting users.

**Recommendations**

Update Instapage Plugin to a version later than 3.5.12.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-60115

Affected Products

Instapage Plugin