Логотип exploitDog
bind:CVE-2025-0955
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0955

Количество 2

Количество 2

nvd логотип

CVE-2025-0955

11 месяцев назад

The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'vidorev_import_single_video' AJAX action in all versions up to, and including, 2.9.9.9.9.9.5. This makes it possible for unauthenticated attackers to import arbitrary youtube videos.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-54pq-m8wj-92v3

11 месяцев назад

The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'vidorev_import_single_video' AJAX action in all versions up to, and including, 2.9.9.9.9.9.5. This makes it possible for unauthenticated attackers to import arbitrary youtube videos.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0955

The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'vidorev_import_single_video' AJAX action in all versions up to, and including, 2.9.9.9.9.9.5. This makes it possible for unauthenticated attackers to import arbitrary youtube videos.

CVSS3: 5.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-54pq-m8wj-92v3

The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'vidorev_import_single_video' AJAX action in all versions up to, and including, 2.9.9.9.9.9.5. This makes it possible for unauthenticated attackers to import arbitrary youtube videos.

CVSS3: 5.3
0%
Низкий
11 месяцев назад

Уязвимостей на страницу