plugin

Game Users Share Buttons Vulnerabilities

1 known security issue reported for the Game Users Share Buttons WordPress plugin. Most recent disclosed Jun 27, 2025.

1 high

Running Game Users Share Buttons on your site? Check whether your installed version is affected.

Scan your site free

Game Users Share Buttons <= 1.3.0 - Authenticated (Subscriber+) Arbitrary File Deletion via themeNameId Parameter

high

The Game Users Share Buttons plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ajaxDeleteTheme() function in all versions up to, and including, 1.3.0. This makes it possible for Subscriber-level attackers to add arbitrary file paths (such as ../../../../wp-con...

CVSS:
8.8
Affected:
up to 1.3.0
Fix:
No patched version reported
Disclosed:
Jun 27, 2025

CVE-2025-6755 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database