Skip to main content
Loading…
    CVE-2025-14441 — The Popupkit plugin for WordPress is vulnerable to arbitrary subscriber data deletion due to missing authorization on the DELETE `/subscribers` REST API endpoint in all versions up to, and including, — CVE Database · The Intelligence Room