A vulnerability has been found in broadstreetads Broadstreet Plugin up to 1.53.1 on WordPress and classified as critical . This impacts the function create_advertiser of the component AJAX Action Handler . Performing a manipulation results in improper authorization. This vulnerability is identified as CVE-2025-9988 . The attack can be initiated remotely. There is not any exploit available.