CVE-2025-2780 | Woffice Core Plugin up to 5.4.21 on WordPress saveFeaturedImage unrestricted upload
A vulnerability classified as critical was found in Woffice Core Plugin up to 5.4.21 on WordPress. This vulnerability affects the function saveFeaturedImage. The manipulation leads to unrestricted upload.
This vulnerability was named CVE-2025-2780. The attack can be initiated remotely. There is no exploit available.