CVE-2025-14357 | Mega Store Woocommerce Theme Plugin up to 5.9 on WordPress whizzie.php setup_widgets authorization
A vulnerability has been found in Mega Store Woocommerce Theme Plugin up to 5.9 on WordPress and classified as critical. Affected is the function setup_widgets of the file core/includes/importer/whizzie.php. Performing a manipulation results in missing authorization.
This vulnerability is reported as CVE-2025-14357. The attack is possible to be carried out remotely. No exploit exists.