First published: Thu Mar 27 2025(Updated: )
Deserialization of Untrusted Data vulnerability in Cozmoslabs TranslatePress allows Object Injection. This issue affects TranslatePress: from n/a through 2.9.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
TranslatePress | <=2.9.6 | |
TranslatePress | <=2.9.6 |
Update the WordPress TranslatePress plugin to the latest available version (at least 2.9.7).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30773 has a high severity due to the potential for object injection and deserialization of untrusted data.
To fix CVE-2025-30773, upgrade TranslatePress to version 2.9.7 or later.
CVE-2025-30773 affects TranslatePress versions from n/a to 2.9.6.
CVE-2025-30773 is classified as a deserialization of untrusted data vulnerability.
CVE-2025-30773 specifically affects the Cozmoslabs and WordPress versions of TranslatePress.