CVE-2025-62048: WordPress SmartCrawl plugin <= 3.14.3 - Broken Access Control vulnerability
Published Oct 22, 2025
·Updated
Missing Authorization vulnerability in WPMU DEV - Your All-in-One WordPress Platform SmartCrawl smartcrawl-seo.This issue affects SmartCrawl: from n/a through <= 3.14.3.
Affected Software
2 affected components
WPMU DEV SmartCrawl<=3.14.3
WordPress SmartCrawl<=3.14.3
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-62048?
The severity of CVE-2025-62048 is classified as a medium risk due to the missing authorization vulnerability.
2
How do I fix CVE-2025-62048?
To fix CVE-2025-62048, update the SmartCrawl plugin to version 3.14.4 or later.
3
What versions are affected by CVE-2025-62048?
CVE-2025-62048 affects SmartCrawl versions from n/a up to and including 3.14.3.
4
What impact does CVE-2025-62048 have on security?
CVE-2025-62048 can allow unauthorized access to certain functionalities within the SmartCrawl plugin.
5
Who is affected by CVE-2025-62048?
Users of the WPMU DEV SmartCrawl plugin versions 3.14.3 and below are affected by CVE-2025-62048.