CVE-2025-5499 | slackero phpwcms up to 1.9.45/1.10.8 image_resized.php is_file/getimagesize imgfile deserialization
A vulnerability, which was classified as critical, has been found in slackero phpwcms up to 1.9.45/1.10.8. This impacts the function is_file/getimagesize of the file image_resized.php. The manipulation of the argument imgfile leads to deserialization.
This vulnerability is listed as CVE-2025-5499. The attack may be initiated remotely. In addition, an exploit is available.
It is advisable to upgrade the affected component.