Missing Authorization Vulnerability in HasTech HT Mega Plugin
CVE-2025-54695
5.4MEDIUM
What is CVE-2025-54695?
A missing authorization vulnerability in the HasTech HT Mega plugin allows attackers to exploit incorrectly configured access control security levels. This can lead to unauthorized access to sensitive functionalities of WordPress sites utilizing this plugin. Affected versions span from n/a to 2.9.0, necessitating immediate attention to enhance security configurations.
Affected Version(s)
HT Mega <= 2.9.0