CVE-2025-28862: Venugopal Comment Date And Gravatar Remover

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Comment Date and Gravatar remover remove-date-and-gravatar-under-comment allows Cross Site Request Forgery.This issue affects Comment Date and Gravatar remover: from n/a through <= 1.0.

Affected products

  • Venugopal Comment Date And Gravatar Remover: version 1.0 only

Published 2025-03-11. Last modified 2026-06-17.