← Back

CVE-2025-28954

nvd nist
Published: Jun 6, 2025Modified: Apr 23, 2026Deferred

JSON object

Loading...
7.4
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 4.0
Source: audit@patchstack.com (Secondary)

Description

Cross-Site Request Forgery (CSRF) vulnerability in wphobby Backwp backwp allows Path Traversal.This issue affects Backwp: from n/a through <= 2.0.2.

Timeline

No history available yet.