Missing Authorization vulnerability in WP Shuffle WP Subscription Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Subscription Forms: from n/a through 1.2.3.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-11295 | Missing Authorization vulnerability in WP Shuffle WP Subscription Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Subscription Forms: from n/a through 1.2.3. |
Fixes
Solution
Update the WordPress WP Subscription Forms plugin to the latest available version (at least 1.2.4).
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Apr 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in WP Shuffle WP Subscription Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Subscription Forms: from n/a through 1.2.3. | |
| Title | WordPress WP Subscription Forms <= 1.2.3 - Broken Access Control Vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-04-16T14:31:57.068Z
Reserved: 2025-04-16T06:26:52.002Z
Link: CVE-2025-39591
No data.
Status : Awaiting Analysis
Published: 2025-04-16T13:15:51.820
Modified: 2025-04-16T13:25:37.340
Link: CVE-2025-39591
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD