PT-2026-1477 · WordPress · Fahad Mahmood Rss Feed Widget
CVE-2025-69349
·
Publicado
2026-01-06
·
Atualizado
2026-01-06
CVSS v3.1
5.4
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Fahad Mahmood RSS Feed Widget versions through 3.0.2
Description
An issue exists in Fahad Mahmood RSS Feed Widget related to incorrectly configured access control security levels, potentially allowing unauthorized access. The issue is a missing authorization check.
Recommendations
Update Fahad Mahmood RSS Feed Widget to a version later than 3.0.2.
Correção
Missing Authorization
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Fahad Mahmood Rss Feed Widget