CVE-2025-15027 | JAY Login & Register Plugin up to 2.6.03 on WordPress jay_login_register_ajax_create_final_user privileges management (EUVD-2025-206901 / CNNVD-202602-1241)
A vulnerability, which was classified as critical, has been found in JAY Login & Register Plugin up to 2.6.03 on WordPress. Impacted is the function jay_login_register_ajax_create_final_user. Performing a manipulation results in improper privilege management.
This vulnerability is reported as CVE-2025-15027. The attack is possible to be carried out remotely. No exploit exists.