Skip to content
Multiple Vulnerabilities in WordPress Plugins Exposed

Multiple Vulnerabilities in WordPress Plugins Exposed

First seen 25 Sep 2026, 15:24 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •September 25, 2026 at 17:52 UTC
  • •CVE-2025-5947 allows unauthorized access via insecure AJAX endpoints in WordPress plugins.
  • •CVE-2025-31651 enables bypassing security restrictions through crafted requests.
  • •Both vulnerabilities have available PoC code, increasing the risk of exploitation.

Recent vulnerabilities in WordPress plugins have been identified, including CVE-2025-5947 affecting the Service Finder plugin, which allows unauthorized access through insecure AJAX endpoints. This vulnerability impacts numerous WordPress installations, particularly those using the Service Finder plugin for booking services. Additionally, CVE-2025-31651 has been reported, allowing attackers to bypass security restrictions in specific configurations through crafted requests. The scope of impact includes potentially thousands of WordPress sites, emphasizing the need for immediate attention from site administrators. Both vulnerabilities have proof-of-concept (PoC) code available, increasing the urgency for patching. The vulnerabilities were disclosed in September 2026, with CVE-2025-5947 being highlighted for its critical nature. Security researchers stress the importance of ethical practices when testing for these vulnerabilities.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-24
CVE-2025-5947 disclosed
Vulnerability in Service Finder plugin allows unauthorized access through insecure AJAX endpoints.
Sploitus
2026-09-25
CVE-2025-31651 disclosed
Vulnerability allows bypassing security restrictions in specific configurations via crafted requests.
Sploitus
2026-09-25
PoC code available for both CVEs
Proof-of-concept code has been released, increasing the urgency for site administrators to patch.
Sploitus

More articles in this cluster (2)

Following this threat?

Track CVE-2025-31651 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed