CVE-2025-12957 | All-in-One Video Gallery Plugin up to 4.5.7 on WordPress VTT File Parser unrestricted upload
A vulnerability was found in All-in-One Video Gallery Plugin up to 4.5.7 on WordPress. It has been rated as critical. This issue affects some unknown processing of the component VTT File Parser. The manipulation leads to unrestricted upload.
This vulnerability is documented as CVE-2025-12957. The attack can be initiated remotely. There is not any exploit available.