CRITICAL 9.8 CVE-2025-9314 Published 2 Sept 2026

WordPress Developer Tools Plugin File Upload Bug

Worried this affects one of your servers?

The Developer Tools WordPress plugin, up to version 1.1.3, contains a critical vulnerability.

SWFUpload, a component bundled with the plugin, allows unauthenticated users to upload arbitrary files.

Reference: CVE-2025-9314 on NVD

← Back to Security News