First published: Sun Feb 16 2025(Updated: )
Missing Authorization vulnerability in enituretechnology Distance Based Shipping Calculator allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Distance Based Shipping Calculator: from n/a through 2.0.22.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Distance Based Shipping Calculator | <=2.0.22 | |
WordPress Distance Based Shipping Calculator Plugin | <=2.0.22 |
Update the WordPress Distance Based Shipping Calculator plugin to the latest available version (at least 2.0.23).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26765 is classified as a missing authorization vulnerability with significant security implications.
To mitigate CVE-2025-26765, upgrade the Distance Based Shipping Calculator plugin to version 2.0.23 or later.
CVE-2025-26765 affects the Distance Based Shipping Calculator plugin versions up to and including 2.0.22.
CVE-2025-26765 is a missing authorization vulnerability that allows for incorrect access control.
CVE-2025-26765 impacts the Distance Based Shipping Calculator plugin developed by Eniture Technology and WordPress.