Imdad Next Web iNext Woo Pincode Checker Cross-Site Request Forgery Vulnerability

Vulnerability

A Cross-Site Request Forgery (CSRF) vulnerability exists in the Imdad Next Web iNext Woo Pincode Checker plugin, specifically in versions through 2.3.1. This vulnerability allows attackers to trick users into performing actions they did not intend to, potentially leading to unauthorized changes or actions within the application.

Impact

Exploitation of this vulnerability could allow for Cross-Site Request Forgery, where an attacker could manipulate a user into making unintended requests, potentially causing changes or actions to be performed on their behalf without their knowledge.

Added: Dec 31, 2025, 4:25 PM
Updated: Dec 31, 2025, 9:26 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.0
remediation
0.0
relevance
1.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.