CVE-2025-11771 | TokenICO Cryptocurrency Token, Launchpad Presale, ICO & IDO, Airdrop Plugin createSaleRecord missing authentication
A vulnerability was found in TokenICO Cryptocurrency Token, Launchpad Presale, ICO & IDO, Airdrop Plugin up to 2.4.6 on WordPress. It has been rated as critical. This affects the function createSaleRecord. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2025-11771. The attack is possible to be carried out remotely. No exploit exists.