CVE-2025-47568: WordPress ZoomSounds plugin <= 6.91 - PHP Object Injection vulnerability
Deserialization of Untrusted Data vulnerability in ZoomIt ZoomSounds dzs-zoomsounds allows Object Injection.This issue affects ZoomSounds: from n/a through <= 6.91.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47568?
CVE-2025-47568 has been classified as a high severity vulnerability due to its potential for object injection and exploitation.
How do I fix CVE-2025-47568?
To mitigate CVE-2025-47568, users should update ZoomIt and ZoomSounds to the latest versions beyond 6.91.
What systems are affected by CVE-2025-47568?
CVE-2025-47568 affects versions of ZoomIt before 6.91 and ZoomSounds up to and including version 6.91.
What kind of attack does CVE-2025-47568 enable?
CVE-2025-47568 enables deserialization of untrusted data, which can lead to remote code execution and unauthorized access.
When was CVE-2025-47568 disclosed?
The exact disclosure date for CVE-2025-47568 has not been specified, but it is advisable to address it promptly to avoid exploitation.