CVE-2025-67914

WordPress VidMov theme <= 2.3.8 - Path Traversal vulnerability

Path Traversal: '.../...//' vulnerability in beeteam368 VidMov vidmov allows Path Traversal.This issue affects VidMov: from n/a through <= 2.3.8.


We have discovered 1,217 live websites that are affected by CVE-2025-67914.

Run a Free Instant Scan




Affected Software

Product  VidMov
Category Wordpress Themes
Vulnerable Domains1,217 live websites (100% of VidMov install base)
Vulnerable Versions
  • from 0 through 2.3.8
Vulnerable Versions Count28 versions ( 100% of all versions)



Details

  • Published - Jan 8, 2026
  • Updated - Jan 20, 2026

Credits

  • Denver Jackson | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2025-67914
United States388 websites



Poland155 websites
Germany101 websites
France73 websites
Brazil69 websites
Cyprus46 websites
GB36 websites
Italy34 websites
Indonesia28 websites
Netherlands27 websites

Website Distribution by TLD

Number of websites using CVE-2025-67914
.com462 websites
.pl135 websites
.org84 websites
.com.br66 websites
.de63 websites
.net40 websites
.fr31 websites
.it30 websites
.nl25 websites
.ru22 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-67914

Top websites that are affected by CVE-2025-67914. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.com Cyprus***,***
********.eu United States***,***
*************.org United States***,***
*******.se Sweden***,***
****.********.eu United States***,***
***********.com GB***,***
**************.com Italy***,***
******************.hu Hungary***,***
**********.com United States***,***
**********.com United States***,***
See full domain list

FAQ

A total of 1,217 websites have been identified as vulnerable to CVE-2025-67914, based on global website indexing conducted by WebTechSurvey.
The VidMov is affected by the CVE-2025-67914 vulnerability.
VidMov versions up to and including 2.3.8 are vulnerable to CVE-2025-67914.