A vulnerability has been found in Custom Login Page Customizer Plugin up to 2.5.3 on WordPress and classified as critical. Affected is an unknown function. Performing a manipulation results in weak password recovery.

This vulnerability was named CVE-2025-14975. The attack may be initiated remotely. There is no available exploit.

The affected component should be upgraded.