CVE-2025-13694 | AA Block Country Plugin up to 1.0.1 on WordPress Header HTTP_X_FORWARDED_FOR access control
A vulnerability marked as critical has been reported in AA Block Country Plugin up to 1.0.1 on WordPress. Affected is an unknown function of the component Header Handler. The manipulation of the argument HTTP_X_FORWARDED_FOR leads to improper access controls.
This vulnerability is listed as CVE-2025-13694. The attack may be initiated remotely. There is no available exploit.