MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 1 h ago, last 1 h ago, peak #5

WP Customer Area plugin hit by PHP remote file inclusion flaw

Original: 🚨 EUVD-2025-38114 πŸ“Š Score: 7.5/10 (CVSS v3.1) πŸ“¦ Product: WP Customer Area 🏒 Vendor: aguilatechnologies πŸ“… Published: 2025

A vulnerability tracked as EUVD-2025-38114 has been published for the WP Customer Area WordPress plugin by vendor aguilatechnologies. The flaw is rated 7.5 out of 10 on the CVSS v3.1 scale and involves improper control of filenames in include or require statements, known as PHP remote file inclusion. The record was published on 6 November 2025 and last updated in October 2026. Security teams are urged to review affected installations and apply updates as they become available.

Why now: A newly published high-severity vulnerability in a widely used WordPress plugin is being flagged to the security community.

WP Customer AreaaguilatechnologiesEUVD-2025-38114WordPress

Open on mastodon β†’

Rank over time, top of the chart is #1. 2 snapshots from 1 h ago to 1 h ago.

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/1606626