CVE-2025-11191
RealPress < 1.1.0 - Unauthenticated Content Creation/Email Sending via REST
The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Produtos afetados
Unknown · RealPressQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →