CVE-2025-14895 | PopupKit Plugin up to 2.2.0 on WordPress REST API Endpoint /popup/logs authorization
A vulnerability labeled as problematic has been found in PopupKit Plugin up to 2.2.0 on WordPress. The impacted element is an unknown function of the file /popup/logs of the component REST API Endpoint. Such manipulation leads to missing authorization.
This vulnerability is referenced as CVE-2025-14895. It is possible to launch the attack remotely. No exploit is available.