Security Advisory

CVE-2025-11191

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-31 06:00:03
Last updated 2026-01-09 20:10:52
Assigner WPScan
State PUBLISHED

Description

The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.