PT-2025-43727 · WordPress · Wp Discussion Board

Kishan Vyas

·

Published

2025-10-25

·

Updated

2025-10-25

·

CVE-2025-8483

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions The Discussion Board – WordPress Forum Plugin versions prior to 2.5.5
Description The software allows users to execute an action that does not properly validate a value before running do shortcode. This can allow authenticated attackers with Subscriber-level access and above to execute arbitrary shortcodes.
Recommendations Update to version 2.5.5 or later.

Fix

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-8483

Affected Products

Wp Discussion Board