Medium 6.5
2025-07-16< 4.10.4
CVE-2025-54016
Minimum safe version
4.10.4
Update to 4.10.4 or later to address 10 fixable vulnerabilities
CVE-2025-54016
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Video Embed & Thumbnail Generator Plugin < 4.8.11 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
VideoJS - Cross-Site Scripting (XSS)
WordPress Video Embed & Thumbnail Generator Plugin <= 4.0 - XSS
WordPress Video Embed & Thumbnail Generator plugin < 4.7.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
WordPress Video Embed & Thumbnail Generator plugin < 4.7.4 - Sensitive Information Disclosure vulnerability
CVE-2012-1786
CVE-2012-1785