CVE-2025-14533 | Advanced Custom Fields: Extended Plugin up to 0.9.2.1 on WordPress insert_user Remote Code Execution
A vulnerability labeled as critical has been found in Advanced Custom Fields: Extended Plugin up to 0.9.2.1 on WordPress. Affected is the function insert_user. Executing a manipulation can lead to Remote Code Execution.
This vulnerability is registered as CVE-2025-14533. It is possible to launch the attack remotely. No exploit is available.