Missing Authorization Vulnerability in WP Shuffle WP Subscription Forms
CVE-2025-39591

Currently unrated

Key Information:

Vendor
WordPress
Vendor
CVE Published:
16 April 2025

Summary

A missing authorization vulnerability exists in the WP Shuffle WP Subscription Forms plugin, allowing attackers to exploit incorrectly configured access control security levels. This affects all versions from n/a through 1.2.3, potentially leading to unauthorized access to sensitive features or data.

References

Timeline

  • Vulnerability published

.