CVE-2025-3607 | Frontend Login and Registration Blocks Plugin up to 1.0.7 on WordPress Password Reset unverified password change
A vulnerability classified as critical has been found in Frontend Login and Registration Blocks Plugin up to 1.0.7 on WordPress. Affected is an unknown function of the component Password Reset Handler. The manipulation leads to unverified password change.
This vulnerability is traded as CVE-2025-3607. It is possible to launch the attack remotely. There is no exploit available.