CVE-2026-25390: WordPress New User Approve plugin <= 3.2.3 - Broken Access Control vulnerability
Published Mar 25, 2026
·Updated
Missing Authorization vulnerability in Saad Iqbal New User Approve new-user-approve allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects New User Approve: from n/a through <= 3.2.3.
Affected Software
1 affected component
Saad Iqbal WordPress New User Approve<=3.2.3
Event History
Mar 25, 2026
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness