CVE-2025-52738: WordPress Wikipedia Preview plugin <= 1.15.0 - Broken Access Control vulnerability
Missing Authorization vulnerability in Wikimedia Foundation Wikipedia Preview wikipedia-preview allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Wikipedia Preview: from n/a through <= 1.15.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52738?
CVE-2025-52738 is classified as a medium severity vulnerability due to its potential impact on access control.
How do I fix CVE-2025-52738?
To fix CVE-2025-52738, update the Wikimedia Foundation Wikipedia Preview and WordPress Wikipedia Preview Plugin to version 1.15.1 or later.
What systems are affected by CVE-2025-52738?
CVE-2025-52738 affects Wikimedia Foundation Wikipedia Preview and the WordPress Wikipedia Preview Plugin versions up to and including 1.15.0.
What type of vulnerability is CVE-2025-52738?
CVE-2025-52738 is a missing authorization vulnerability resulting from incorrectly configured access control security levels.
Can CVE-2025-52738 lead to unauthorized access?
Yes, CVE-2025-52738 can lead to unauthorized access if the vulnerability is exploited successfully.