The Copypress Rest API plugin for WordPress is vulnerable to Remote Code Execution via copyreap_handle_image() Function in versions 1.1 to 1.2. The plugin falls back to a hard-coded JWT signing key when no secret is defined and does not restrict which file types can be fetched and saved as attachments. As a result, unauthenticated attackers can forge a valid token to gain elevated privileges and upload an arbitrary file (e.g. a PHP script) through the image handler, leading to remote code execution.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 30 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 30 Sep 2025 09:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Wordpress
         Wordpress wordpress  | 
|
| Vendors & Products | 
        
        Wordpress
         Wordpress wordpress  | 
Tue, 30 Sep 2025 03:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | The Copypress Rest API plugin for WordPress is vulnerable to Remote Code Execution via copyreap_handle_image() Function in versions 1.1 to 1.2. The plugin falls back to a hard-coded JWT signing key when no secret is defined and does not restrict which file types can be fetched and saved as attachments. As a result, unauthenticated attackers can forge a valid token to gain elevated privileges and upload an arbitrary file (e.g. a PHP script) through the image handler, leading to remote code execution. | |
| Title | Copypress Rest API 1.1 - 1.2 - Missing Configurable JWT Secret and File-Type Validation to Unauthenticated Remote Code Execution | |
| Weaknesses | CWE-321 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: Wordfence
Published: 2025-09-30T03:35:25.180Z
Updated: 2025-09-30T13:24:27.012Z
Reserved: 2025-08-05T21:49:23.989Z
Link: CVE-2025-8625
Updated: 2025-09-30T13:24:23.153Z
Status : Awaiting Analysis
Published: 2025-09-30T11:37:46.510
Modified: 2025-10-02T19:12:42.843
Link: CVE-2025-8625
No data.