CVE-2025-13619 | Flex Store Users Plugin up to 1.1.0 on WordPress add_role_seller fs_type privileges management (EUVD-2025-204635)
A vulnerability was found in Flex Store Users Plugin up to 1.1.0 on WordPress. It has been rated as critical. The affected element is the function fsUserHandle::signup/fsSellerRole::add_role_seller. The manipulation of the argument fs_type leads to improper privilege management.
This vulnerability is listed as CVE-2025-13619. The attack may be initiated remotely. There is no available exploit.