Authorization Flaw in Sparkle Construction Light Affects Access Control
CVE-2025-62960
5.4MEDIUM
What is CVE-2025-62960?
A Missing Authorization vulnerability exists in Sparkle WP Construction Light, which could allow unauthorized users to exploit incorrectly configured access control levels. This issue affects versions from n/a to 1.6.7, potentially leading to unauthorized access to sensitive functionalities.
Affected Version(s)
Construction Light <= 1.6.7