Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-8085

The Ditty WordPress plugin before 3.1.58 lacks authorization and authentication for requests to its displayItems endpoint, allowing unauthenticated visitors to make requests to arbitrary URLs.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.109
EPSS Ranking 93.4%
CVSS Severity
CVSS v3 Score 8.6
Products affected by CVE-2025-8085


Contact Us

Shodan ® - All rights reserved