
🚨 CVE-2025-4855: Support Board <= 3.8.0 - Unauthen... Hardcoded encryption keys in WordPress plugins are the gift that keeps on giving - this one unlocks full AJAX execution ... https://zerodaysignal.com/vulnerability/CVE-2025-4855 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
The post publicly discloses CVE-2025-4855, detailing that hardcoded encryption keys in a WordPress plugin allow unrestricted AJAX execution, and it provides a link to a write‑up for further information.
