CVE · Medium

CVE-2025-64357 — Advanced Database Cleaner – Optimize & Clean Database to Speed Up Site Performance [advanced-database-cleaner] < 3.1.7

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-64357 Advanced Database Cleaner – Optimize & Clean Database to Speed Up Site Performance [advanced-database-cleaner] < 3.1.7 Cross-Site Request Forgery (CSRF) Medium 4.3 < 3.1.7 3.1.7 2025-10-30

CVE-2025-64357

The Advanced Database Cleaner plugin for WordPress contains a security flaw in versions 3.1.6 and earlier, allowing malicious individuals to deceive administrators into executing unintended actions by exploiting a weakness in the way certain requests are validated. This vulnerability can be triggered through specially crafted links or other types of manipulated input. As a result, unauthorized actions may be carried out without proper authentication.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.