CVE-2025-32296: WordPress Simple Link Directory Pro plugin < 14.8.1 - Broken Access Control Vulnerability
Missing Authorization vulnerability in quantumcloud Simple Link Directory Pro allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple Link Directory Pro: from n/a through 14.7.3.
Other sources
Missing Authorization vulnerability in quantumcloud Simple Link Directory qc-simple-link-directory allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple Link Directory: from n/a through < 14.8.1.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32296?
CVE-2025-32296 is classified as a missing authorization vulnerability affecting Simple Link Directory Pro.
How do I fix CVE-2025-32296?
To fix CVE-2025-32296, ensure that access control security levels are correctly configured in Simple Link Directory Pro.
Which software versions are affected by CVE-2025-32296?
CVE-2025-32296 affects all versions of Simple Link Directory Pro up to and including 14.7.3.
What type of vulnerability is CVE-2025-32296?
CVE-2025-32296 is a missing authorization vulnerability that allows unauthorized access to certain features.
Who is the vendor for the affected product in CVE-2025-32296?
The vendor for the affected product in CVE-2025-32296 is QuantumCloud.