Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
Update the WordPress Tuturn Plugin to the latest available version (at least 3.6).
Workaround
No workaround given by the vendor.
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 19 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress |
|
| Vendors & Products |
Wordpress
Wordpress wordpress |
Thu, 18 Dec 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Dec 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AmentoTech Tuturn allows Path Traversal.This issue affects Tuturn: from n/a before 3.6. | |
| Title | WordPress Tuturn plugin < 3.6 - Arbitrary File Download vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-01-20T14:28:20.022Z
Reserved: 2025-10-29T03:08:07.245Z
Link: CVE-2025-64235
Updated: 2025-12-18T18:50:50.580Z
Status : Awaiting Analysis
Published: 2025-12-18T17:15:55.327
Modified: 2026-01-20T15:18:47.137
Link: CVE-2025-64235
No data.
OpenCVE Enrichment
Updated: 2025-12-19T09:15:56Z