Unauthorized Access Vulnerability in VidoRev Extensions Plugin for WordPress
CVE-2025-0955
5.3MEDIUM
What is CVE-2025-0955?
The VidoRev Extensions plugin for WordPress is susceptible to unauthorized access due to a lack of proper capability checks on the 'vidorev_import_single_video' AJAX action. This vulnerability allows unauthenticated attackers to import arbitrary YouTube videos, potentially leading to the manipulation of content on sites using the affected plugin versions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
VidoRev Extensions * <= 2.9.9.9.9.9.5