News

CVE-2025-5947: WordPress Plugin flaw lets hackers access Admin accounts

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2025-10-09 14:27:38 UTC

Threat actors are exploiting a critical flaw, tracked as CVE-2025-5947, in the Service Finder WordPress theme’s Bookings plugin. Threat actors are exploiting a critical vulnerability, tracked as CVE-2025-5947 (CVSS score 9.8), in the Service Finder WordPress …

CVE-2025-5947: WordPress Plugin flaw lets hackers access Admin accounts Threat actors are exploiting a critical vulnerability, tracked as CVE-2025-5947 (CVSS score 9.8), in the Service Finder WordPr… [+2893 chars]