Attackers Actively Exploiting Critical Vulnerability in WP Freeio Plugin

On September 25th, 2025, we received a submission for a Privilege Escalation vulnerability in WP Freeio, a WordPress plugin bundled in the Freeio premium theme with more than 1,700 sales. This vulnerability makes it possible for an unauthenticated attacker to grant themselves administrative privileges by specifying user role during registration.

The post Attackers Actively Exploiting Critical Vulnerability in WP Freeio Plugin appeared first on Wordfence.

This article has been indexed from Blog – Wordfence

Read the original article: