Missing Authorization in Shortlinks by Pretty Links Affects Access Control Security
CVE-2025-48247
4.3MEDIUM
What is CVE-2025-48247?
A missing authorization vulnerability in the Shortlinks by Pretty Links plugin allows attackers to exploit incorrectly configured access control levels. This issue impacts users of versions from n/a up to 3.6.15, posing a risk of unauthorized access to sensitive functions and data. Website administrators are urged to review their configurations and apply necessary security measures to safeguard against potential exploits.
Affected Version(s)
Shortlinks by Pretty Links <= 3.6.15