CVE-2026-22383: WordPress PawFriends - Pet Shop and Veterinary WordPress theme theme <= 1.3 - Insecure Direct Object References (IDOR) vulnerability
Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes PawFriends - Pet Shop and Veterinary WordPress Theme pawfriends allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PawFriends - Pet Shop and Veterinary WordPress Theme: from n/a through <= 1.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22383?
The severity of CVE-2026-22383 is considered medium due to the risk of unauthorized access resulting from improperly configured access controls.
How do I fix CVE-2026-22383?
To fix CVE-2026-22383, update the Mikado Themes PawFriends - Pet Shop and Veterinary WordPress Theme to a version later than 1.3, which addresses the authorization bypass issue.
What systems are affected by CVE-2026-22383?
CVE-2026-22383 affects the Mikado Themes PawFriends - Pet Shop and Veterinary WordPress Theme up to version 1.3.
What type of vulnerability is CVE-2026-22383?
CVE-2026-22383 is categorized as an Authorization Bypass Through User-Controlled Key vulnerability.
Can CVE-2026-22383 lead to data breaches?
Yes, CVE-2026-22383 can potentially lead to data breaches by allowing unauthorized users to access restricted data.