CVE-2025-62072: WordPress Front End Users plugin <= 3.2.33 - Broken Access Control vulnerability
Published Oct 22, 2025
·Updated
Missing Authorization vulnerability in Rustaurius Front End Users front-end-only-users.This issue affects Front End Users: from n/a through <= 3.2.33.
Affected Software
2 affected components
Rustaurius Front End Users<=3.2.33
WordPress Front End Users<=3.2.33
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-62072?
CVE-2025-62072 has been classified as a missing authorization vulnerability that can lead to unauthorized access.
2
How do I fix CVE-2025-62072?
To fix CVE-2025-62072, update the Rustaurius Front End Users plugin to version 3.2.34 or later.
3
Who is affected by CVE-2025-62072?
CVE-2025-62072 affects users of Rustaurius Front End Users and WordPress Front End Users versions up to and including 3.2.33.
4
What kind of vulnerability is CVE-2025-62072?
CVE-2025-62072 is a missing authorization vulnerability that can lead to broken access controls.
5
When was CVE-2025-62072 reported?
CVE-2025-62072 was reported recently and affects specific versions of the Front End Users plugin.