CVE-2025-24744: WordPress Bridge Core plugin <= 3.3 - Broken Access Control vulnerability
Missing Authorization vulnerability in NotFound Bridge Core bridge-core.This issue affects Bridge Core: from n/a through <= 3.3.
Other sources
Missing Authorization vulnerability in NotFound Bridge Core. This issue affects Bridge Core: from n/a through 3.3.
— NVD
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24744?
The severity of CVE-2025-24744 is classified as medium due to its potential for unauthorized actions.
How do I fix CVE-2025-24744?
To fix CVE-2025-24744, upgrade NotFound Bridge Core and WordPress Bridge Core plugin to version 3.4 or later.
What software is affected by CVE-2025-24744?
CVE-2025-24744 affects NotFound Bridge Core up to version 3.3 and the WordPress Bridge Core plugin also up to version 3.3.
What kind of vulnerability is CVE-2025-24744?
CVE-2025-24744 is a Missing Authorization vulnerability that allows unauthorized access to sensitive actions.
Can CVE-2025-24744 lead to data breaches?
Yes, CVE-2025-24744 can potentially lead to data breaches due to improper access control allowing unauthorized users to perform actions.