CVE-2025-10489 | SureForms Plugin up to 1.12.0 on WordPress register_post_types authorization (EUVD-2025-30312)
A vulnerability labeled as critical has been found in SureForms Plugin up to 1.12.0 on WordPress. Affected by this issue is the function register_post_types. The manipulation results in missing authorization.
This vulnerability is reported as CVE-2025-10489. The attack can be launched remotely. No exploit exists.