CVE-2025-46232: WordPress Download Alt Text AI plugin <= 1.9.93 - Broken Access Control Vulnerability
Published Apr 22, 2025
·Updated
Missing Authorization vulnerability in alttextai Download Alt Text AI alttext-ai allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Alt Text AI: from n/a through <= 1.9.93.
Affected Software
3 affected components
alttext Alt Text Ai Wordpress<1.9.94
alttextai Download Alt Text AI<=1.9.93
WordPress Download Alt Text AI<=1.9.93
Remediation
Information
Update the WordPress Download Alt Text AI plugin to the latest available version (at least 1.9.94).
Event History
Apr 22, 2025
CVE Published
via MITRE·09:53 AM
Data Sourced
via MITRE·09:53 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-46232?
CVE-2025-46232 is classified as a missing authorization vulnerability that can lead to unauthorized access.
2
How do I fix CVE-2025-46232?
To fix CVE-2025-46232, upgrade Download Alt Text AI to version 1.9.94 or later.
3
What versions of Download Alt Text AI are affected by CVE-2025-46232?
CVE-2025-46232 affects Download Alt Text AI from any version up to and including 1.9.93.
4
What type of vulnerability is CVE-2025-46232?
CVE-2025-46232 is a missing authorization vulnerability that allows for exploiting incorrectly configured access control security levels.
5
Which platforms are impacted by CVE-2025-46232?
CVE-2025-46232 impacts both the alttextai Download Alt Text AI and WordPress Download Alt Text AI plugins.