CVE-2025-11191
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/10/2025
Last modified:
09/01/2026
Description
The RealPress WordPress plugin before 1.1.0 registers the REST routes without proper permission checks, allowing the creation of pages and sending of emails from the site.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM



