Skip to main content
Loading…
    CVE-2025-10057 — The WP Import – Ultimate CSV XML Importer for WordPress plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.28. This is due to the write_to_customfile() — CVE Database · The Intelligence Room