Dmitry V. UPC/EAN/GTIN Code Generator Cross-Site Request Forgery Vulnerability

Vulnerability

A Cross-Site Request Forgery (CSRF) vulnerability exists in the UPC/EAN/GTIN Code Generator plugin by Dmitry V. This vulnerability allows attackers to trick users into performing actions they did not intend to. It affects versions of the plugin from an unknown version up to and including 2.0.2.

Impact

Exploitation of this vulnerability could lead to unauthorized actions being performed on behalf of the user.

Added: Oct 22, 2025, 3:41 PM
Updated: Oct 22, 2025, 9:51 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.4
remediation
0.0
relevance
0.8
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.