
🔴 CVE-2025-15030 - Critical The User Profile Builder WordPress plugin before 3.15.2 does not have a proper password reset process, allowing a few unauthenticated requests to reset the password of any user by knowin... https://www.thehackerwire.com/vulnerability/CVE-2025-15030/ https://t.co/OXiSG8piM4
Post summary
A critical unauthenticated password reset vulnerability was disclosed in the User Profile Builder WordPress plugin before version 3.15.2, enabling attackers to reset any user’s password.



