CVE-2025-23761
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2025-23761 is aMissing Authorization vulnerability that affects the Alex Volkov Woo Tuner application. The flaw permits unauthorized access when security levels in the access control are incorrectly configured. This issue poses a risk for versions of Woo Tuner ranging from n/a to 0.1.2. Successful exploitation could result in attackers gaining unauthorized access to the system, potentially leading to data theft or system damage. System administrators are advised to update to the latest version or apply appropriate workarounds to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.