CVE-2025-15507 | Magic Import Document Extractor Plugin up to 1.0.4 on WordPress ajax_sync_usage authorization
A vulnerability identified as critical has been detected in Magic Import Document Extractor Plugin up to 1.0.4 on WordPress. The impacted element is the function ajax_sync_usage. Performing a manipulation results in missing authorization.
This vulnerability is identified as CVE-2025-15507. The attack can be initiated remotely. There is not any exploit available.