CVE-2025-69079: WordPress Sound | Musical Instruments Online Store theme <= 1.6.9 - Deserialization of untrusted data vulnerability
Deserialization of Untrusted Data vulnerability in ThemeREX Sound | Musical Instruments Online Store musicplace allows Object Injection.This issue affects Sound | Musical Instruments Online Store: from n/a through <= 1.6.9.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69079?
CVE-2025-69079 has a critical severity due to its potential for remote code execution through object injection.
How do I fix CVE-2025-69079?
To fix CVE-2025-69079, update the ThemeREX Sound | Musical Instruments Online Store theme to version 1.7.0 or later.
What types of attacks can exploit CVE-2025-69079?
CVE-2025-69079 can be exploited for remote code execution and unauthorized access through object injection.
Which versions of the Sound | Musical Instruments Online Store theme are affected by CVE-2025-69079?
CVE-2025-69079 affects versions of the Sound | Musical Instruments Online Store theme up to and including 1.6.9.
Is CVE-2025-69079 being actively exploited in the wild?
There are indications that CVE-2025-69079 could be actively exploited, making it important to apply the necessary patches immediately.