Authorization Bypass in Equalize Digital Accessibility Checker
CVE-2025-57886
5.4MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 22 August 2025
What is CVE-2025-57886?
A critical security flaw in the Accessibility Checker plugin by Equalize Digital allows attackers to exploit incorrectly configured access control settings. This vulnerability enables unauthorized users to bypass security measures, leading to potential unauthorized access to restricted areas. The issue is present from the initial release through version 1.30.0, emphasizing the need for immediate attention and remediation by users of this plugin.
Affected Version(s)
Accessibility Checker by Equalize Digital <= 1.30.0
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
n0_arafat_n0 (Patchstack Alliance)