CVE-2025-22720: WordPress WpRently | WordPress plugin plugin <= 2.2.1 - Broken Access Control vulnerability
Missing Authorization vulnerability in magepeopleteam Booking and Rental Manager booking-and-rental-manager-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking and Rental Manager: from n/a through <= 2.2.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22720?
CVE-2025-22720 is considered to have a high severity due to the potential for unauthorized access through improperly configured access controls.
How do I fix CVE-2025-22720?
To fix CVE-2025-22720, ensure that access control security levels are correctly configured in MagePeople Team Booking and Rental Manager versions up to 2.2.1.
Which versions of MagePeople Team Booking and Rental Manager are affected by CVE-2025-22720?
CVE-2025-22720 affects MagePeople Team Booking and Rental Manager versions from n/a through 2.2.1.
What types of attacks can CVE-2025-22720 enable?
CVE-2025-22720 can enable unauthorized actions by exploiting weak access control configurations.
Is there a patch available for CVE-2025-22720?
As of now, it's recommended to check for updates directly from MagePeople or their support regarding any available patches for CVE-2025-22720.