Missing Authorization in Bridge Core Plugin by NotFound
CVE-2025-24744
4.3MEDIUM
What is CVE-2025-24744?
The NotFound Bridge Core plugin is susceptible to a missing authorization vulnerability, exposing users to potential unauthorized actions within the application. This flaw allows attackers to bypass access controls, potentially leading to undesirable changes or data exposure. The issue exists in Bridge Core across versions from n/a through 3.3, making it imperative for users to implement proper security measures to mitigate risks associated with this vulnerability.
Affected Version(s)
Bridge Core <= 3.3