CVE-2025-58193: WordPress Uncanny Automator Plugin <= 6.7.0.1 - Broken Access Control Vulnerability
Missing Authorization vulnerability in Uncanny Owl Uncanny Automator allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Uncanny Automator: from n/a through 6.7.0.1.
Other sources
Missing Authorization vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Automator: from n/a through <= 6.7.0.1.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58193?
CVE-2025-58193 has a moderate severity level due to its potential for unauthorized access through incorrectly configured access control security levels.
How do I fix CVE-2025-58193?
To fix CVE-2025-58193, update the Uncanny Automator plugin to the latest version beyond 6.7.0.1.
What software is affected by CVE-2025-58193?
CVE-2025-58193 affects versions of Uncanny Owl Uncanny Automator from n/a to 6.7.0.1.
What type of vulnerability is CVE-2025-58193?
CVE-2025-58193 is classified as a Missing Authorization vulnerability.
Can CVE-2025-58193 lead to data leakage?
Yes, due to the missing authorization, CVE-2025-58193 can potentially lead to unauthorized access and data leakage.