First published: Tue Apr 01 2025(Updated: )
Missing Authorization vulnerability in ShortPixel ShortPixel Adaptive Images allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects ShortPixel Adaptive Images: from n/a through 3.10.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
ShortPixel Adaptive Images | <=3.10.0 | |
ShortPixel Adaptive Images | <=3.10.0 |
Update the WordPress ShortPixel Adaptive Images plugin to the latest available version (at least 3.10.1).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30853 has been classified as a high-severity vulnerability due to the potential for unauthorized access.
To fix CVE-2025-30853, update ShortPixel Adaptive Images to the latest version beyond 3.10.0.
CVE-2025-30853 affects ShortPixel Adaptive Images versions up to and including 3.10.0.
CVE-2025-30853 can allow attackers to exploit incorrectly configured access control security levels.
Currently, the best workaround for CVE-2025-30853 is to ensure that no users have elevated access until the plugin is updated.