First published: Thu Apr 03 2025(Updated: )
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in pixelgrade Category Icon allows Path Traversal. This issue affects Category Icon: from n/a through 1.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Pixelgrade Category Icon | >=1.0.0 | |
WordPress Category Icon | <=1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-31825 is considered significant due to its potential for path traversal exploitation.
To fix CVE-2025-31825, update the Pixelgrade Category Icon or WordPress Category Icon plugin to a patched version.
CVE-2025-31825 affects Pixelgrade Category Icon and WordPress Category Icon versions from 1.0.0 and below.
A path traversal vulnerability like CVE-2025-31825 allows an attacker to gain unauthorized access to files and directories on the server.
Yes, CVE-2025-31825 can be exploited remotely, allowing attackers to craft requests that manipulate file paths.