CVE-2025-30997: WordPress Car Repair Services theme <= 5.0 - Server Side Request Forgery (SSRF) Vulnerability
Server-Side Request Forgery (SSRF) vulnerability in SmartDataSoft Car Repair Services allows Server Side Request Forgery. This issue affects Car Repair Services: from n/a through 5.0.
Other sources
Server-Side Request Forgery (SSRF) vulnerability in SmartDataSoft Car Repair Services car-repair-services allows Server Side Request Forgery.This issue affects Car Repair Services: from n/a through <= 5.0.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30997?
CVE-2025-30997 has a high severity rating due to its potential for Server-Side Request Forgery exploitation.
How do I fix CVE-2025-30997?
To fix CVE-2025-30997, update SmartDataSoft Car Repair Services to version 5.1 or later.
What systems are affected by CVE-2025-30997?
CVE-2025-30997 affects SmartDataSoft Car Repair Services versions from n/a to 5.0 and potentially WordPress Car Repair Services up to version 5.0.
What is Server-Side Request Forgery in the context of CVE-2025-30997?
In the context of CVE-2025-30997, Server-Side Request Forgery allows attackers to send unauthorized requests from the server, potentially accessing sensitive data.
Is CVE-2025-30997 under active exploitation?
As of now, there are reports indicating that CVE-2025-30997 may be actively exploited, prompting immediate attention from affected users.