CVE-2025-67583: WordPress IDonate plugin <= 2.1.15 - Broken Access Control vulnerability
Missing Authorization vulnerability in Foysal Imran IDonate idonate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects IDonate: from n/a through <= 2.1.15.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67583?
CVE-2025-67583 is classified as a medium severity vulnerability due to its association with missing authorization and access control flaws.
How do I fix CVE-2025-67583?
To fix CVE-2025-67583, update the IDonate plugin to version 2.1.16 or later to ensure proper access control settings.
What software is affected by CVE-2025-67583?
CVE-2025-67583 affects the IDonate plugin for WordPress version 2.1.15 and earlier.
What challenges does CVE-2025-67583 present?
CVE-2025-67583 presents challenges by allowing unauthorized access to restricted functionalities within the IDonate plugin.
Is there a workaround for CVE-2025-67583?
The best approach is to update the IDonate plugin; there are no recommended workarounds for CVE-2025-67583.