CVE-2025-14357 | Mega Store Woocommerce Theme Plugin up to 5.9 on WordPress whizzie.php setup_widgets authorization
A vulnerability was found in Mega Store Woocommerce Theme Plugin up to 5.9 on WordPress and classified as critical. Affected by this vulnerability is the function setup_widgets of the file core/includes/importer/whizzie.php. Executing a manipulation can lead to missing authorization.
This vulnerability appears as CVE-2025-14357. The attack may be performed from remote. There is no available exploit.