CVE-2025-60210: WordPress Everest Forms - Frontend Listing plugin <= 1.0.5 - PHP Object Injection Vulnerability
Deserialization of Untrusted Data vulnerability in wpeverest Everest Forms - Frontend Listing everest-forms-frontend-listing allows Object Injection.This issue affects Everest Forms - Frontend Listing: from n/a through <= 1.0.5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60210?
CVE-2025-60210 is classified as a medium-severity vulnerability due to the potential for object injection through deserialization of untrusted data.
How do I fix CVE-2025-60210?
To fix CVE-2025-60210, update the Everest Forms - Frontend Listing plugin to the latest version beyond 1.0.5.
What products are affected by CVE-2025-60210?
CVE-2025-60210 affects the Everest Forms - Frontend Listing plugin versions up to and including 1.0.5.
What type of vulnerability is CVE-2025-60210?
CVE-2025-60210 is a deserialization of untrusted data vulnerability that can lead to object injection.
Who is affected by CVE-2025-60210?
Users of the Everest Forms - Frontend Listing plugin for WordPress who are operating version 1.0.5 or lower are affected by CVE-2025-60210.