PSW Front-end Login & Registration plugin for WordPress contains a weak password recovery mechanism that can be exploited by unauthenticated attackers. This vulnerability affects versions through 1.13 and allows attackers to potentially gain unauthorized access.
id: CVE-2025-47646
info:
name: PSW Front-end Login & Registration 1.13 - Weak Password Recovery
...