Skip to main content

CVE-2025-48309: CWE-352 Cross-Site Request Forgery (CSRF) in web-able BetPress

High
VulnerabilityCVE-2025-48309cvecve-2025-48309cwe-352
Published: Thu Aug 28 2025 (08/28/2025, 12:36:50 UTC)
Source: CVE Database V5
Vendor/Project: web-able
Product: BetPress

Description

Cross-Site Request Forgery (CSRF) vulnerability in web-able BetPress allows Stored XSS. This issue affects BetPress: from n/a through 1.0.1 Lite.

Technical Details

Data Version
5.1
Assigner Short Name
Patchstack
Date Reserved
2025-05-19T14:13:45.513Z
Cvss Version
3.1
State
PUBLISHED

Threat ID: 68b0537dad5a09ad006cfc52

Added to database: 8/28/2025, 1:02:53 PM

Last updated: 8/28/2025, 1:02:53 PM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats