Medium 4.3
2025-12-16< 4.2.2
CVE-2025-13794
Minimum safe version
4.2.2
Update to 4.2.2 or later to address 9 fixable vulnerabilities
CVE-2025-13794
CVE-2025-10145
CVE-2024-38719
CVE-2023-7073
CVE-2024-33629
CVE-2023-0477
WordPress Auto Featured Image (Auto Post Thumbnail) Plugin <= 3.9.15 is vulnerable to Arbitrary File Download
Auto Featured Image (Auto Post Thumbnail) <= 3.9.15 - Authenticated (Author+) Arbitrary File Upload
CVE-2021-24932