CVE-2025-30773
CVSS 3.1 Score 7.2 of 10 (high)
Details
Summary
CVE-2025-30773 is a deserialization vulnerability affecting the Cozmoslabs TranslatePress plugin. This issue permits Object Injection, which can be exploited by attackers to execute arbitrary code. The vulnerability exists in TranslatePress versions from n/a to 2.9.6, posing a risk for WordPress sites using this plugin. Successful exploitation could lead to a range of malicious activities, including data theft, unauthorized access, and system compromise. It is recommended that users update their TranslatePress plugin to the latest, secure version as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.