CVE-2026-25470
CRITICAL
NVD
CVSS Score
10
Severity
CRITICAL
Published
Jun 17, 2026
Vendor
unknown
Description
Improper Control of Generation of Code ('Code Injection') vulnerability in ACPT ACPT (Pro) - Custom Post Types Plugin for WordPress allows Remote Code Inclusion. This issue affects ACPT (Pro) - Custom Post Types Plugin for WordPress: from n/a through 2.0.47.