CVE-2025-57958: WordPress WowAddons Plugin <= 1.0.17 - Broken Access Control Vulnerability
Published Sep 22, 2025
·Updated
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Affected Software
2 affected components
wpxpo WowAddons>=1.0.17
WordPress WowAddons Plugin<=1.0.17
Event History
Sep 22, 2025
CVE Published
via MITRE·06:24 PM
Rejected
via MITRE·06:24 PM
Data Sourced
via NVD·07:15 PM
Description
Apr 6, 2026
Rejected
via MITRE·02:41 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-57958?
CVE-2025-57958 has been classified with a medium severity due to its potential for unauthorized access.
2
How do I fix CVE-2025-57958?
To fix CVE-2025-57958, update WowAddons to the latest version that addresses the authorization issues.
3
What versions are affected by CVE-2025-57958?
CVE-2025-57958 affects WowAddons versions from n/a through 1.0.17.
4
What type of vulnerability is CVE-2025-57958?
CVE-2025-57958 is a missing authorization vulnerability related to access control security levels.
5
Who is impacted by CVE-2025-57958?
Users of the WPXPO WowAddons plugin, specifically those using versions up to 1.0.17, are impacted by CVE-2025-57958.