
CVE-2025-13091 The Shopire theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the shopire_admin_install_plugin() function in… https://www.cve.org/CVERecord?id=CVE-2025-13091
Post summary
The Shopire WordPress theme has a missing capability check that permits unauthorized data modification; the description confirms the vulnerability but does not provide a patch, exploit, or active attack evidence.
