← Back

CVE-2025-15485

nvd nist
Published: Sep 2, 2026Modified: Sep 3, 2026Deferred

JSON object

Loading...
8.2
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Exploitability: 3.9 / Impact: 4.2
Source: contact@wpscan.com (Secondary)

Description

The Auto x LINE WordPress plugin through 1.0.0 does not have authorization checks in some of its REST endpoints, allowing unauthenticated users to call them and update the plugin settings, clear logs etc

Timeline

No history available yet.