Server-Side Request Forgery Vulnerability in bdthemes Prime Slider Addon for Elementor
CVE-2025-68500
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 24 December 2025
What is CVE-2025-68500?
The bdthemes Prime Slider β Addons For Elementor is susceptible to a Server-Side Request Forgery (SSRF) vulnerability, which allows attackers to send crafted requests to internal resources, potentially leading to sensitive data exposure. This security flaw affects all versions of the Prime Slider up to and including 4.0.10, highlighting the need for users to implement protective measures to mitigate unauthorized access to their server environments. It is crucial to update to patched versions to ensure the integrity of your WordPress site.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Prime Slider β Addons For Elementor <= n/a
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved