CVE-2025-58662: WordPress Awesome Support plugin <= 6.3.5 - Deserialization of untrusted data vulnerability
Published Sep 22, 2025
·Updated
Deserialization of Untrusted Data vulnerability in awesomesupport Awesome Support awesome-support allows Object Injection.This issue affects Awesome Support: from n/a through <= 6.3.5.
Affected Software
1 affected component
Awesome Support Awesome Support<=6.3.5
Event History
Sep 22, 2025
CVE Published
via MITRE·06:23 PM
Data Sourced
via MITRE·06:23 PM
DescriptionWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-58662?
CVE-2025-58662 has a high severity rating due to the potential for remote code execution from object injection.
2
How do I fix CVE-2025-58662?
To fix CVE-2025-58662, update the Awesome Support Plugin to version 6.3.5 or later.
3
Which software versions are affected by CVE-2025-58662?
CVE-2025-58662 affects Awesome Support versions up to and including 6.3.4.
4
What type of vulnerability is CVE-2025-58662?
CVE-2025-58662 is classified as a deserialization of untrusted data vulnerability.
5
Can CVE-2025-58662 lead to unauthorized access?
Yes, CVE-2025-58662 can lead to unauthorized access due to the possibility of object injection.