CVE-2025-3793 | Buddypress Force Password Change Plugin up to 0.1 on WordPress bp_force_password_ajax unverified password change
A vulnerability has been found in Buddypress Force Password Change Plugin up to 0.1 on WordPress and classified as critical. Affected by this vulnerability is the function bp_force_password_ajax. The manipulation leads to unverified password change.
This vulnerability is known as CVE-2025-3793. The attack can be launched remotely. There is no exploit available.