CVE-2025-50007 | xSmart Plugin up to 1.2.9.4 on WordPress privileges assignment
A vulnerability classified as critical was found in xSmart Plugin up to 1.2.9.4 on WordPress. Affected is an unknown function. The manipulation results in incorrect privilege assignment.
This vulnerability is reported as CVE-2025-50007. The attack can be launched remotely. No exploit exists.