Broken Access Control Vulnerability in Wordapp by WordPress
CVE-2025-30927
4.3MEDIUM
What is CVE-2025-30927?
The Wordapp plugin for WordPress suffers from a missing authorization flaw, which allows unauthorized users to exploit improperly configured access control security levels. This vulnerability impacts versions from n/a through 1.7.0, potentially enabling unauthorized access to sensitive functions and data within the Wordapp framework.
Affected Version(s)
Wordapp <= 1.7.0