Merv Barrett Import into Easy Property Listings Cross-Site Request Forgery Vulnerability

Vulnerability

A Cross-Site Request Forgery (CSRF) vulnerability exists in the 'Import into Easy Property Listings' WordPress plugin, specifically in versions prior to and including 2.2.1. This vulnerability allows attackers to trick users into performing actions they did not intend to, potentially leading to unauthorized changes or actions within the application.

Impact

Exploitation of this vulnerability could allow for Cross-Site Request Forgery, where an attacker could manipulate a user into performing actions on their behalf without their consent.

Added: Dec 30, 2025, 6:12 PM
Updated: Dec 30, 2025, 6:12 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.4
remediation
0.0
relevance
1.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.