First published: Thu Apr 17 2025(Updated: )
Missing Authorization vulnerability in wpseek WordPress Dashboard Tweeter allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WordPress Dashboard Tweeter: from n/a through 1.3.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Dashboard Tweeter | <=1.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23906 is classified as a medium-severity vulnerability due to missing authorization controls.
To fix CVE-2025-23906, update the WordPress Dashboard Tweeter plugin to version 1.3.3 or later.
CVE-2025-23906 affects the WordPress Dashboard Tweeter plugin versions up to and including 1.3.2.
CVE-2025-23906 is a missing authorization vulnerability that allows for the exploitation of incorrectly configured access controls.
Users of the WordPress Dashboard Tweeter plugin who have not updated their software are at risk due to CVE-2025-23906.