CVE-2025-23708 Information

Description

Cross-Site Request Forgery (CSRF) vulnerability in Dominic Fallows DF Draggable allows Stored XSS.This issue affects DF Draggable: from n/a through 1.13.2.

Reference

https://patchstack.com/database/wordpress/plugin/df-draggable/vulnerability/wordpress-df-draggable-plugin-1-13-2-csrf-to-stored-xss-vulnerability?_s_id=cve

Share on: