Security Advisory
CVE-2025-13029
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Knowband Mobile App Builder WordPress plugin before 3.0.0 does not have authorisation when deleting users via its REST API, allowing unauthenticated attackers to delete arbitrary users.