plugin

Imaq Core Vulnerabilities

1 known security issue reported for the Imaq Core WordPress plugin. Most recent disclosed Dec 11, 2025.

1 medium

Running Imaq Core on your site? Check whether your installed version is affected.

Scan your site free

IMAQ Core <= 1.2.1 - Cross-Site Request Forgery to URL Structure Update

medium

The IMAQ Core plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.1. This is due to missing nonce validation on the URL structure settings update functionality. This makes it possible for unauthenticated attackers to update the plugin's URL structure settings via a...

CVSS:
4.3
Affected:
up to 1.2.1
Fix:
No patched version reported
Disclosed:
Dec 11, 2025

CVE-2025-13363 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database