High 8.8
2025-10-31< 3.7.4
CVE-2025-64353
Minimum safe version
3.7.4
Update to 3.7.4 or later to address 4 fixable vulnerabilities
CVE-2025-64353
Polylang <= 2.5 - CSRF in categories and media duplication
Polylang <= 2.5 - Cross-Site Request Forgery
Polylang <= 1.5.1 - Cross-Site Scripting