Cross-Site Request Forgery (CSRF) vulnerability in Merv Barrett Import into Easy Property Listings allows Cross Site Request Forgery.This issue affects Import into Easy Property Listings: from n/a through 2.2.1.
Advisories

No advisories yet.

Fixes

Solution

Update the WordPress Import into Easy Property Listings Plugin to the latest available version (at least 2.2.2).


Workaround

No workaround given by the vendor.

History

Tue, 20 Jan 2026 15:30:00 +0000


Tue, 20 Jan 2026 14:45:00 +0000


Mon, 05 Jan 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Merv Barrett
Merv Barrett import Into Easy Property Listings
Wordpress
Wordpress wordpress
Vendors & Products Merv Barrett
Merv Barrett import Into Easy Property Listings
Wordpress
Wordpress wordpress

Tue, 30 Dec 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 30 Dec 2025 16:30:00 +0000

Type Values Removed Values Added
Description Cross-Site Request Forgery (CSRF) vulnerability in Merv Barrett Import into Easy Property Listings allows Cross Site Request Forgery.This issue affects Import into Easy Property Listings: from n/a through 2.2.1.
Title WordPress Import into Easy Property Listings plugin <= 2.2.1 - Cross Site Request Forgery (CSRF) vulnerability
Weaknesses CWE-352
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2026-01-20T14:28:14.605Z

Reserved: 2025-10-07T15:41:20.865Z

Link: CVE-2025-62112

cve-icon Vulnrichment

Updated: 2025-12-30T19:29:04.011Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-12-30T17:15:42.547

Modified: 2026-01-20T15:17:52.007

Link: CVE-2025-62112

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-01-05T10:19:57Z

Weaknesses