CVE-2025-15485

HIGH
8.2CVSS v3
CVSS v2
0.20% EPSS (exploit probability)
CWE-862CWE

Description

The Auto x LINE WordPress plugin through 1.0.0 does not have authorization checks in some of its REST endpoints, allowing unauthenticated users to call them and update the plugin settings, clear logs etc

CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references