Broken Access Control Vulnerability in SOPlanning by SOPlanning
CVE-2025-62293
5.3MEDIUM
What is CVE-2025-62293?
SOPlanning is exposed to a vulnerability due to inadequate permission checks on the /status endpoint. This flaw permits an authenticated attacker to manipulate the Project Status functionality, allowing them to add, edit, and delete any status at will. The issue has been addressed in version 1.55, highlighting the importance of regularly updating software components to mitigate such vulnerabilities.
Affected Version(s)
SOPlanning 0 < 1.55
