CVE-2025-10008

All FrameworksWordPressCWE-862CVE-2025-10008

CVE-2025-10008

State: PUBLISHED · Published: 2025-10-30 · Updated: 2026-04-08 · Assigner: Wordfence
Description
The Translate WordPress and go Multilingual – Weglot plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'clean_options' function in all versions up to, and including, 5.1. This makes it possible for unauthenticated attackers to delete limited transients that contain cached plugin options.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/10xxx/CVE-2025-10008.json