Security Advisory

CVE-2025-9196

5.3
MEDIUM

Vulnerability Description

The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.21.0 via the ~/admin/inc/phpinfo.php file that gets created on install. This makes it possible for unauthenticated attackers to extract sensitive data including configuration data.
Published Date October 11, 2025
Official Source NIST NVD Advisory