Medium 4.3
2025-09-22< 9.4
WordPress Emergency Password Reset Plugin <= 9.0 is vulnerable to Cross Site Request Forgery (CSRF)
Minimum safe version
9.4
Update to 9.4 or later to address 2 fixable vulnerabilities
WordPress Emergency Password Reset Plugin <= 9.0 is vulnerable to Cross Site Request Forgery (CSRF)
WordPress Emergency Password Reset Plugin <= 8.0 is vulnerable to Cross Site Request Forgery (CSRF)