First published: Mon Mar 03 2025(Updated: )
Missing Authorization vulnerability in tsecher ts-tree allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects ts-tree: from n/a through 0.1.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
ts-tree | <=0.1.1 | |
WordPress ts-tree plugin |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23515 is classified as a critical vulnerability due to its potential for unauthorized access and exploitation.
To mitigate CVE-2025-23515, it is recommended to update the ts-tree to version 0.1.2 or later.
CVE-2025-23515 affects ts-tree versions up to and including 0.1.1 and the WordPress ts-tree plugin.
CVE-2025-23515 is a missing authorization vulnerability that can lead to incorrect access control configurations.
Yes, CVE-2025-23515 can potentially be exploited remotely if the affected software is improperly configured.