← WordPress Vulnerabilities
WordPress security by component

Lucky Wheel Giveaway

Lucky Wheel Giveaway is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Feb 11, 2026; the highest CVE/CNA score is 7.2.

Plugin slug: lucky-wheel-giveaway

CVE-2025-14541: Lucky Wheel Giveaway: Code execution

Lucky Wheel Giveaway is affected by code execution. Exploitation requires at least administrator-level access. Successful exploitation can run attacker-controlled code in the WordPress hosting account.

PublishedFeb 11, 2026
Safe version guidanceSee mitigation notes
Safe version
Feb 11, 2026 CVE-2025-14541
Lucky Wheel Giveaway: Code execution
Lucky Wheel Giveaway is affected by code execution. Exploitation requires at least administrator-level access. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE7.2
NVDPending