VYPR

Integration Cds

by WordPress

Source repositories

CVEs (1)

  • CVE-2025-7695HigJul 24, 2025
    risk 0.57cvss 8.8epss 0.01

    The Dataverse Integration plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization checks within its reset_password_link REST endpoint in versions 2.77 through 2.81. The endpoint’s handler accepts a client-supplied id, email, or login, looks up…