CVE-2025-47580: WordPress Front End Users plugin <= 3.2.35 - Broken Access Control vulnerability
Missing Authorization vulnerability in Rustaurius Front End Users front-end-only-users allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Front End Users: from n/a through <= 3.2.35.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47580?
CVE-2025-47580 is classified as a high-severity vulnerability due to its potential for unauthorized access to sensitive resources.
How do I fix CVE-2025-47580?
To fix CVE-2025-47580, ensure proper access controls are implemented and update Rustaurius Front End Users to the latest version beyond 3.2.32.
Who is affected by CVE-2025-47580?
CVE-2025-47580 affects users of Rustaurius Front End Users and WordPress Front End Users versions up to and including 3.2.32.
What type of vulnerability is CVE-2025-47580?
CVE-2025-47580 is a missing authorization vulnerability that allows for exploiting incorrectly configured access control security levels.
Can CVE-2025-47580 lead to data breaches?
Yes, CVE-2025-47580 can lead to data breaches as it may allow unauthorized users to access sensitive information.