Feed/CVE-2025-11191
CVE-2025-11191MEDIUMCVSS 5.3

CVE-2025-11191

Published Oct 31, 2025·Updated Jun 17, 2026

NVD Description

The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free