CVE-2025-60232: WordPress KBx Pro Ultimate plugin <= 8.0.5 - PHP Object Injection vulnerability
Deserialization of Untrusted Data vulnerability in quantumcloud KBx Pro Ultimate knowledgebase-helpdesk-pro allows Object Injection.This issue affects KBx Pro Ultimate: from n/a through <= 8.0.5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60232?
CVE-2025-60232 is classified as a high-severity vulnerability due to the potential for object injection leading to unauthorized actions.
How do I fix CVE-2025-60232?
To fix CVE-2025-60232, update the KBx Pro Ultimate knowledgebase-helpdesk-pro plugin to version 8.0.6 or later.
What are the consequences of exploiting CVE-2025-60232?
Exploiting CVE-2025-60232 can allow attackers to manipulate object data within the application, potentially leading to data breaches or unauthorized actions.
Which versions of KBx Pro Ultimate are affected by CVE-2025-60232?
CVE-2025-60232 affects all versions of KBx Pro Ultimate up to and including version 8.0.5.
Is CVE-2025-60232 specific to any platform?
CVE-2025-60232 is specific to the QuantumCloud KBx Pro Ultimate plugin, including its usage within WordPress.