Missing Authorization Flaw in WPManiax WP DB Booster Plugin
CVE-2025-53318

5.4MEDIUM

Key Information:

Vendor

WordPress

Vendor
CVE Published:
27 June 2025

What is CVE-2025-53318?

A missing authorization vulnerability in the WPManiax WP DB Booster plugin permits attackers to exploit incorrectly configured access control security levels. This flaw could allow unauthorized access to sensitive data or functions, potentially compromising the security of WordPress sites utilizing this plugin across affected versions.

Affected Version(s)

WP DB Booster <= 1.0.1

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

theviper17 (Patchstack Alliance)
.
CVE-2025-53318 : Missing Authorization Flaw in WPManiax WP DB Booster Plugin