CVE-2025-15027 | JAY Login & Register Plugin up to 2.6.03 on WordPress jay_login_register_ajax_create_final_user privileges management
A vulnerability, which was classified as critical, has been found in JAY Login & Register Plugin up to 2.6.03 on WordPress. Impacted is the function jay_login_register_ajax_create_final_user. Performing a manipulation results in improper privilege management.
This vulnerability is reported as CVE-2025-15027. The attack is possible to be carried out remotely. No exploit exists.