
🚨 [HIGH] Active exploitation detected: CVE-2021-25114 Exploit in the wild confirmed for CVE-2021-25114 (CVSS null). The Paid Memberships Pro WordPress plugin before 2.6.7 does not escape the discount_code... 🔗 http://ctiwatch.cloud/alerts #ZeroDay #ExploitInWild #CyberSecurity
Post summary
The alert reports confirmed in‑the‑wild exploitation of CVE‑2021‑25114 affecting the Paid Memberships Pro WordPress plugin, detailing the vulnerability but offering no patch or mitigation information.
