
CVE-2025-15565 The Nexi XPay plugin for WordPress is vulnerable to unauthorized modification of data due to missing authorization checks on the redirect function in all versions up … https://www.cve.org/CVERecord?id=CVE-2025-15565
Post summary
The post announces CVE‑2025‑15565, noting unauthorized data modification via missing authorization checks in the redirect function of the Nexi XPay WordPress plugin.
