Missing Authorization Vulnerability in Button Block by bPlugins LLC
CVE-2025-22787
8.8HIGH
What is CVE-2025-22787?
The Button Block plugin by bPlugins LLC is prone to a missing authorization vulnerability that allows unauthorized access to certain functionalities not properly constrained by access control lists (ACLs). This issue affects versions from n/a to 1.1.5, potentially exposing sensitive operations to users without the necessary permissions.
Affected Version(s)
Button Block <= 1.1.5