CVE-2025-49895 | iThemes ServerBuddy Plugin up to 1.0.5 on WordPress cross-site request forgery (EUVD-2025-25056)
A vulnerability classified as problematic has been found in iThemes ServerBuddy Plugin up to 1.0.5 on WordPress. Impacted is an unknown function. This manipulation causes cross-site request forgery. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is tracked as CVE-2025-49895. The attack is possible to be carried out remotely. No exploit exists.