CVE-2025-14629 | Alchemist Ajax Upload Plugin up to 1.1 on WordPress delete_file authorization (EUVD-2026-4581)
A vulnerability labeled as critical has been found in Alchemist Ajax Upload Plugin up to 1.1 on WordPress. This vulnerability affects the function delete_file. Executing a manipulation can lead to missing authorization.
This vulnerability is registered as CVE-2025-14629. It is possible to launch the attack remotely. No exploit is available.