First published: Tue Apr 01 2025(Updated: )
Missing Authorization vulnerability in webdevstudios Automatic Featured Images from Videos allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Automatic Featured Images from Videos: from n/a through 1.2.4.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Automatic Featured Images from Videos | <=1.2.4 | |
WordPress Automatic Featured Images from Videos | <=1.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-31820 has a high severity rating due to its potential to exploit missing authorization vulnerabilities.
To fix CVE-2025-31820, update the Automatic Featured Images from Videos plugin to version 1.2.5 or later.
CVE-2025-31820 affects versions of the Automatic Featured Images from Videos plugin from n/a through 1.2.4.
CVE-2025-31820 is a missing authorization vulnerability related to incorrectly configured access control security levels.
Users of the WebDevStudios Automatic Featured Images from Videos plugin up to version 1.2.4 are impacted by CVE-2025-31820.