CVE-2025-53425: WordPress Dokan plugin <= 4.1.3 - Privilege Escalation vulnerability
Published Oct 22, 2025
·Updated
Incorrect Privilege Assignment vulnerability in Dokan, Inc. Dokan dokan-lite allows Privilege Escalation.This issue affects Dokan: from n/a through <= 4.1.3.
Affected Software
1 affected component
Dokan Dokan (WordPress plugin)<=4.1.3
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-53425?
CVE-2025-53425 is classified as a high severity privilege escalation vulnerability.
2
How do I fix CVE-2025-53425?
To fix CVE-2025-53425, upgrade Dokan dokan-lite to version 4.1.3 or higher.
3
What versions are affected by CVE-2025-53425?
CVE-2025-53425 affects Dokan dokan-lite versions up to and including 4.1.2.
4
Does CVE-2025-53425 affect any WordPress plugins?
Yes, CVE-2025-53425 also affects the WordPress Dokan plugin up to version 4.1.2.
5
What can happen if CVE-2025-53425 is exploited?
If exploited, CVE-2025-53425 can allow unauthorized users to escalate their privileges within the application.