High 7.8 Unfixed Closed
2025-10-04≤ 1.2.4
CVE-2023-53608
CVE-2023-53608
CVE-2025-10192
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WP Photo Effects Plugin <= 1.2.4 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.2.3 - Missing Authorization to Arbitrary Options Update
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Freemius Library < 2.2.4 - Subscriber+ Arbitrary Option Update
WordPress WP Photo Effects plugin <= 1.2.2 - Sensitive Information Disclosure vulnerability
WordPress WP Photo Effects plugin <= 1.2.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability