CVE-2025-7684 | Last.fm Recent Album Artwork Plugin up to 1.0.2 on WordPress Setting lastfm_albums_artwork.php cross-site request forgery (EUVD-2025-25070)
A vulnerability has been found in Last.fm Recent Album Artwork Plugin up to 1.0.2 on WordPress and classified as problematic. Affected is an unknown function of the file lastfm_albums_artwork.php of the component Setting Handler. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2025-7684. It is possible to launch the attack remotely. There is no exploit available.