Path Traversal Vulnerability in Apptha Slider Gallery by Apptha
CVE-2025-31050

7.5HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
9 June 2025

What is CVE-2025-31050?

The Apptha Slider Gallery plugin contains a Path Traversal vulnerability that can allow unauthenticated attackers to access arbitrary files on the server. By manipulating input parameters, an attacker can traverse beyond the intended directories, leading to the exposure of sensitive file information. This security flaw spans affected versions from the initial release through version 2.5, making it a critical concern for users of the plugin. Addressing this vulnerability promptly is essential to safeguard the integrity and confidentiality of server resources.

Affected Version(s)

Apptha Slider Gallery <= 2.5

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Thomas Parkison (Patchstack Alliance)
.
CVE-2025-31050 : Path Traversal Vulnerability in Apptha Slider Gallery by Apptha