Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersPatch
The post highlights an unauthenticated SSRF flaw in Oxygen Theme WP (<=6.0.8) with CVSS 7.2 and urges users to apply the available patch.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
An unauthenticated server‑side request forgery vulnerability (CVE‑2025‑12886) affects Oxygen as far back as version 6.0.8, announced in a threat alert with an intel link, but no PoC, exploit, or patch details are provided.
CVEarity@CVEarityDisclosure
The post announces CVE-2025-12886 as a high‑risk vulnerability affecting WordPress with a severity score of 7.2, but offers no additional technical details, PoC, patches, or exploitation information.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The tweet announces the CVE‑2025‑12886 vulnerability in Oxygen <=6.0.8, highlighting an unauthenticated server‑side request forgery via route_path and links to an Intel report for more details.
CVE@CVEnewDisclosure
The text announces the discovery of an SSRF vulnerability in the Oxygen Theme WordPress plugin, detailing affected versions without mentioning patches or exploitation activity.