
🚨 [HIGH] Active exploitation detected: CVE-2025-12974 Exploit in the wild confirmed for CVE-2025-12974 (CVSS null). The Gravity Forms plugin for WordPress is vulnerable to arbitrary file uploads due to mi... 🔗 http://ctiwatch.cloud/alerts #ZeroDay #ExploitInWild #CyberSecurity
Post summary
The post confirms that CVE-2025-12974 is actively exploited in the wild, highlighting an arbitrary file upload flaw in the Gravity Forms WordPress plugin, with no mention of patches or PoC details.
