CVE-2025-46513: Codebangers All In One Time Clock Lite

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in Codebangers All in One Time Clock Lite aio-time-clock-lite allows Cross Site Request Forgery.This issue affects All in One Time Clock Lite: from n/a through < 1.3.326.

Affected products

  • Codebangers All In One Time Clock Lite: up to and including 1.3.326

Published 2025-04-24. Last modified 2026-06-17.