CVE-2025-3853 | WPshop Plugin up to 2.6.0 on WordPress callback_generate_api_key resource injection
A vulnerability, which was classified as problematic, has been found in WPshop Plugin up to 2.6.0 on WordPress. This issue affects the function callback_generate_api_key. The manipulation leads to improper control of resource identifiers.
The identification of this vulnerability is CVE-2025-3853. The attack may be initiated remotely. There is no exploit available.