First published: Thu Mar 27 2025(Updated: )
Missing Authorization vulnerability in richplugins Trust.Reviews allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Trust.Reviews: from n/a through 2.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trust.Reviews | <=2.3 | |
Trust.Reviews | <=2.3 |
Update the WordPress Trust.Reviews plugin to the latest available version (at least 2.4).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-30883 is critical due to the potential for unauthorized access through incorrectly configured access control settings.
To fix CVE-2025-30883, update the Trust.Reviews plugin to version 2.3 or later which addresses the missing authorization vulnerability.
CVE-2025-30883 affects the Trust.Reviews plugin versions up to and including 2.3 in any systems utilizing it.
Exploitation of CVE-2025-30883 can lead to unauthorized access to sensitive functionalities and data within the Trust.Reviews plugin.
Yes, CVE-2025-30883 specifically affects the Trust.Reviews plugin on WordPress platforms where it is installed.