← CVE Tracker
9.8CRITICAL
CVE-2025-8359 — The AdForest theme for WordPress is vulnerable to Authentication Bypass in all versions up to, and…
Unknown · Unknown · Published 6 Sept 2025 · Modified 1 Oct 2026
Unknown · Unknown · Published 6 Sept 2025 · Modified 1 Oct 2026
The AdForest theme for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 6.0.9. This is due to the plugin not properly verifying a user's identity prior to authenticating them. This makes it possible for unauthenticated attackers to log in as other users, including administrators, without access to a password.
Link: adminadda.com/cve/CVE-2025-8359