AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-14892

CRITICAL · CVSS 9.8 EPSS 0.37%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-02-12 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects WordPress.

CVE
CVE-2025-14892
Severity
CRITICAL
CVSS
9.8
EPSS
0.37%
WordPress

Original NVD Description

The Prime Listing Manager WordPress plugin through 1.1 allows an attacker to gain administrative access without having any kind of account on the targeted site and perform unauthorized actions due to a hardcoded secret.