CVE-2025-22541
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Jan 7, 2025
CWE ID 862
Summary
CVE-2025-22541 is a new vulnerability disclosed in WP Delete Post Copies, a plugin used by WordPress sites. The flaw involves missing authorization checks, enabling unauthorized users to exploit incorrectly configured access control security levels. This issue poses a risk to WP Delete Post Copies installations from version n/a to 5.5, and could potentially lead to unwanted deletion or modification of posts. It is essential for affected users to update to a secure version of the plugin or implement access control measures to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.