CVE-2025-12167 | Contact Form 7 AWeber Extension Plugin up to 0.1.42 on WordPress AJAX Endpoint wp_ajax_aweber_logreset authorization (EUVD-2025-38362)
A vulnerability categorized as problematic has been discovered in Contact Form 7 AWeber Extension Plugin up to 0.1.42 on WordPress. This affects the function wp_ajax_aweber_logreset of the component AJAX Endpoint. The manipulation results in missing authorization.
This vulnerability is reported as CVE-2025-12167. The attack can be launched remotely. No exploit exists.