CVE-2025-58601: WordPress Classified Listing Plugin <= 5.0.6 - Broken Access Control Vulnerability
Missing Authorization vulnerability in RadiusTheme Classified Listing allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Classified Listing: from n/a through 5.0.6.
Other sources
Missing Authorization vulnerability in RadiusTheme Classified Listing classified-listing allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Classified Listing: from n/a through <= 5.0.6.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58601?
CVE-2025-58601 has a high severity due to potential unauthorized access to sensitive information.
How do I fix CVE-2025-58601?
To fix CVE-2025-58601, update the RadiusTheme Classified Listing plugin to a version above 5.0.6 that addresses the authorization issues.
What type of vulnerability is CVE-2025-58601?
CVE-2025-58601 is a missing authorization vulnerability that allows exploitation of incorrectly configured access control security levels.
Which versions are affected by CVE-2025-58601?
Versions of RadiusTheme Classified Listing and WordPress Classified Listing Plugin from n/a to 5.0.6 are affected by CVE-2025-58601.
What can attackers do with CVE-2025-58601?
Attackers can exploit CVE-2025-58601 to gain unauthorized access to resources and potentially manipulate data.