9.8 Actively Exploited: Critical Flaw CVE-2025-5947 (CVSS 9.8) Allows Unauthenticated Admin Takeover in WordPress Plugin Vulnerability Report 9.8 Actively Exploited: Critical Flaw CVE-2025-5947 (CVSS 9.8) Allows Unauthenticated Admin Takeover in WordPress Plugin Do Son October 8, 2025 0 Security researchers at Wordfence have issued an urgent warning about an actively exploited authentication bypass vulnerability in... Read More Read more about <span class="dcs-sev-badge" style="background:#ef4444;">9.8</span> Actively Exploited: Critical Flaw CVE-2025-5947 (CVSS 9.8) Allows Unauthenticated Admin Takeover in WordPress Plugin