CVE-2025-5831: Droip < 2.5.2 - Authenticated (Subscriber+) Arbitrary File Upload
The Droip plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the makegooglefontoffline() function in all versions up to, and excluding, 2.5.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5831?
CVE-2025-5831 has been classified as a high severity vulnerability due to its potential for arbitrary file uploads.
How do I fix CVE-2025-5831?
To fix CVE-2025-5831, update the Droip plugin to version 2.2.1 or later which includes the necessary file type validation.
Who is affected by CVE-2025-5831?
CVE-2025-5831 affects all versions of the Droip plugin for WordPress up to and including 2.2.0.
What can an attacker do with CVE-2025-5831?
An authenticated attacker can exploit CVE-2025-5831 to upload arbitrary files, potentially leading to remote code execution.
What versions of the Droip plugin are vulnerable to CVE-2025-5831?
All versions of the Droip plugin up to and including version 2.2.0 are vulnerable to CVE-2025-5831.