CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects WordPress, Java.
CVE
CVE-2025-8047
Severity
CRITICAL
CVSS
9.8
EPSS
0.44%
WordPress Java
Original NVD Description
The disable-right-click-powered-by-pixterme through v1.2 and pixter-image-digital-license thtough v1.0 WordPress plugins load a JavaScript file which has been compromised from an apparent abandoned S3 bucket. It can be used as a backdoor by those who control it, but it currently displays an alert marketing security services. Users that pay are added to allowedDomains to suppress the popup.