CVE · Medium

CVE-2025-68558 — Depicter — Popup & Slider Builder [depicter] < 4.0.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-68558 Depicter — Popup & Slider Builder [depicter] < 4.0.5 Missing Authorization Medium 6.5 < 4.0.5 4.0.5 2026-01-05

CVE-2025-68558

A flaw exists in the Depicter plugin for WordPress, allowing malicious individuals to bypass security checks and execute unauthorized actions without proper authentication. The issue stems from a missing capability verification on a specific function within the plugin, affecting all versions up to 4.0.4. This vulnerability enables unverified users to carry out unauthorized activities.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.