Warning: OttoKit WordPress Plugin Admin Creation Vulnerability Being Actively Exploited
There is a recent report of a significant security issue affecting OttoKit (previously known as SureTriggers) that is being exploited actively shortly after its public disclosure.
This vulnerability, indexed as CVE-2025-3102 (CVSS score: 8.1), involves an authorization bypass flaw that may allow a malicious actor to establish administrator profiles in specific scenarios and gain control over vulnerable websites.
“The
This vulnerability, indexed as CVE-2025-3102 (CVSS score: 8.1), involves an authorization bypass flaw that may allow a malicious actor to establish administrator profiles in specific scenarios and gain control over vulnerable websites.
“The
