CVE-2025-2807 | Motors Plugin up to 1.4.64 on WordPress Plugin Installation mvl_setup_wizard_install_plugin authorization
A vulnerability classified as critical has been found in Motors Plugin up to 1.4.64 on WordPress. Affected is the function mvl_setup_wizard_install_plugin of the component Plugin Installation Handler. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2025-2807. It is possible to launch the attack remotely. There is no exploit available.