PT-2025-46519 · WordPress · Format Plugins

Published

2025-08-28

·

Updated

2025-11-13

·

CVE-2025-61837

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Format Plugins versions 1.1.1 and earlier
Description A Heap-based Buffer Overflow exists in Format Plugins versions 1.1.1 and earlier. Successful exploitation could lead to arbitrary code execution with the privileges of the current user. User interaction is needed for exploitation, specifically requiring a user to open a malicious file.
Recommendations Versions prior to 1.1.1 should be updated.

Fix

Memory Corruption

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-14205
CVE-2025-61837
ZDI-25-992

Affected Products

Format Plugins