CVE-2025-67570: WordPress WPForms Google Sheet Connector plugin <= 4.0.0 - Broken Access Control vulnerability
Missing Authorization vulnerability in WesternDeal WPForms Google Sheet Connector gsheetconnector-wpforms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPForms Google Sheet Connector: from n/a through <= 4.0.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67570?
CVE-2025-67570 is classified as a missing authorization vulnerability that can lead to unauthorized access due to incorrectly configured access control.
How do I fix CVE-2025-67570?
To fix CVE-2025-67570, update the WPForms Google Sheet Connector to the latest version beyond 4.0.0, ensuring proper access control configurations.
What version of WPForms Google Sheet Connector is affected by CVE-2025-67570?
CVE-2025-67570 affects the WPForms Google Sheet Connector version 4.0.0 and earlier.
What type of vulnerability is CVE-2025-67570?
CVE-2025-67570 is a missing authorization vulnerability that can expose sensitive information due to broken access control.
Who is affected by CVE-2025-67570?
Users of the WesternDeal WPForms Google Sheet Connector plugin versions up to and including 4.0.0 are affected by CVE-2025-67570.