CVE-2025-30883: WordPress Trust.Reviews plugin <= 2.3 - Broken Access Control vulnerability
Missing Authorization vulnerability in richplugins Trust.Reviews fb-reviews-widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Trust.Reviews: from n/a through <= 2.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30883?
The severity of CVE-2025-30883 is critical due to the potential for unauthorized access through incorrectly configured access control settings.
How do I fix CVE-2025-30883?
To fix CVE-2025-30883, update the Trust.Reviews plugin to version 2.3 or later which addresses the missing authorization vulnerability.
What systems are affected by CVE-2025-30883?
CVE-2025-30883 affects the Trust.Reviews plugin versions up to and including 2.3 in any systems utilizing it.
What can happen if CVE-2025-30883 is exploited?
Exploitation of CVE-2025-30883 can lead to unauthorized access to sensitive functionalities and data within the Trust.Reviews plugin.
Is CVE-2025-30883 specific to a certain platform?
Yes, CVE-2025-30883 specifically affects the Trust.Reviews plugin on WordPress platforms where it is installed.