CVE-2025-47582: WordPress WPBot Pro Wordpress Chatbot <= 12.7.0 - PHP Object Injection Vulnerability
Deserialization of Untrusted Data vulnerability in QuantumCloud WPBot Pro Wordpress Chatbot allows Object Injection.This issue affects WPBot Pro Wordpress Chatbot: from n/a through 12.7.0.
Other sources
Deserialization of Untrusted Data vulnerability in QuantumCloud WPBot Pro Wordpress Chatbot wpbot-pro allows Object Injection.This issue affects WPBot Pro Wordpress Chatbot: from n/a through <= 12.7.0.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47582?
CVE-2025-47582 is a high-severity vulnerability related to deserialization of untrusted data in the QuantumCloud WPBot Pro Wordpress Chatbot.
How do I fix CVE-2025-47582?
To fix CVE-2025-47582, you should upgrade the QuantumCloud WPBot Pro WordPress Chatbot to the latest version beyond 12.7.0.
What is the impact of CVE-2025-47582?
CVE-2025-47582 can lead to object injection vulnerabilities, which may allow an attacker to execute arbitrary code on the affected system.
Which versions are affected by CVE-2025-47582?
CVE-2025-47582 affects the QuantumCloud WPBot Pro WordPress Chatbot versions up to and including 12.7.0.
Is CVE-2025-47582 being actively exploited?
Current information on CVE-2025-47582 does not confirm active exploitation, but users are encouraged to apply patches promptly.