CVE-2025-32118: WordPress CMP – Coming Soon & Maintenance plugin <= 4.1.14 - Remote Code Execution (RCE) vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in NiteoThemes CMP – Coming Soon & Maintenance cmp-coming-soon-maintenance allows Using Malicious Files.This issue affects CMP – Coming Soon & Maintenance: from n/a through <= 4.1.14.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32118?
CVE-2025-32118 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2025-32118?
To fix CVE-2025-32118, upgrade the NiteoThemes CMP – Coming Soon & Maintenance plugin to version 4.1.14 or higher.
What type of attack does CVE-2025-32118 describe?
CVE-2025-32118 describes an unrestricted file upload vulnerability that allows attackers to upload malicious files.
Which versions of the CMP – Coming Soon & Maintenance are affected by CVE-2025-32118?
CVE-2025-32118 affects versions of CMP – Coming Soon & Maintenance from n/a through 4.1.13.
What impact can CVE-2025-32118 have on my website?
The impact of CVE-2025-32118 can include unauthorized execution of malicious code, potentially compromising the website.