cleantalk
Vulnerabilities and Security Researches

Download Manager and Payment Form WordPress Plugin – WP SmartPay, CVE-2025-25171

CVE, Research URL

CVE-2025-25171

Published on
Jun 27, 2025
Research Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in ThemesGrove WP SmartPay allows Authentication Abuse. This issue affects WP SmartPay: from n/a through 2.7.13.
Affected versions
Min -, max 2.7.13.
Status
vulnerable