CVE-2025-24737
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Apr 17, 2025
CWE ID 862
Summary
CVE-2025-24737 is a security vulnerability affecting Mat Bao Corporation's WP Helper Premium plugin. This missing authorization issue grants unapproved access to functionality, bypassing Access Control Lists (ACLs). The vulnerability exists in versions of WP Helper Premium from n/a to 4.6.1. Successful exploitation could potentially allow unauthorized users to perform actions beyond their permitted scope. It is recommended that users upgrade to the latest version of the plugin to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.