CVE-2025-64350: WordPress Rank Math SEO plugin <= 1.0.252.1 - Broken Access Control vulnerability
Missing Authorization vulnerability in Rank Math SEO Rank Math SEO seo-by-rank-math allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rank Math SEO: from n/a through <= 1.0.252.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64350?
CVE-2025-64350 has a medium severity due to the missing authorization vulnerability that can lead to unauthorized access.
How do I fix CVE-2025-64350?
To fix CVE-2025-64350, update the Rank Math SEO plugin to a version higher than 1.0.252.1 to ensure proper access control.
What versions of Rank Math SEO are affected by CVE-2025-64350?
CVE-2025-64350 affects all versions of Rank Math SEO from an unspecified version up to and including 1.0.252.1.
What type of vulnerability is CVE-2025-64350?
CVE-2025-64350 is classified as a Missing Authorization vulnerability, specifically a broken access control issue.
Can CVE-2025-64350 be exploited by attackers?
Yes, attackers can exploit CVE-2025-64350 by taking advantage of incorrectly configured access control security levels.