The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.
References
Configurations
No configuration.
History
31 Oct 2025, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
31 Oct 2025, 06:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-31 06:15
Updated : 2025-10-31 14:16
NVD link : CVE-2025-11191
Mitre link : CVE-2025-11191
CVE.ORG link : CVE-2025-11191
JSON object : View
Products Affected
No product.
CWE
No CWE.
