The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-10-31 06:15
Updated : 2026-01-09 21:16
NVD link : CVE-2025-11191
Mitre link : CVE-2025-11191
CVE.ORG link : CVE-2025-11191
JSON object : View
Products Affected
No product.
CWE
CWE-862
Missing Authorization
