CVE-2025-31870
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Apr 1, 2025
CWE ID 862
Summary
CVE-2025-31870 is a missing authorization vulnerability affecting WP AutoKeyword from n/a through 1.0 by EXEIdeas International. This issue arises due to incorrectly configured access control security levels, allowing unauthorized exploitation. An attacker can potentially gain unauthorized access to the system, leading to potential data breaches or unintended modifications. System administrators are advised to update WP AutoKeyword to the latest version or implement appropriate access control measures to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress