Vulnerability in VG WORT METIS Plugin for WordPress
CVE-2025-5812
4.3MEDIUM
What is CVE-2025-5812?
The VG WORT METIS plugin for WordPress contains a flaw in the gutenberg_save_post() function, which lacks proper capability checks. This oversight allows authenticated users, such as those with Subscriber-level access, to make unauthorized changes to post settings. All versions up to and including 2.0.0 are impacted, exposing sites to potential manipulation of content settings.
Affected Version(s)
VG WORT METIS * <= 2.0.0