CVE-2025-48921: Getopensocial Open Social
High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Open Social allows Cross Site Request Forgery.This issue affects Open Social: from 0.0.0 before 12.3.14, from 12.4.0 before 12.4.13.
Affected products
- Getopensocial Open Social: before 12.3.14 (fixed in 12.3.14); from 12.4.0, before 12.4.13 (fixed in 12.4.13)
Published 2025-06-26. Last modified 2026-06-17.