Missing Authorization Vulnerability in Trustindex Widgets for Social Photo Feed
CVE-2025-68595

Currently unrated

Key Information:

Vendor

WordPress

Vendor
CVE Published:
24 December 2025

What is CVE-2025-68595?

The Trustindex Widgets for Social Photo Feed has a missing authorization vulnerability that may allow attackers to exploit improperly configured access control settings. This affects versions from n/a up to and including 1.7.7, potentially compromising the security of user data and functionality. Proper configuration and user authorization checks are crucial to mitigate the risks associated with this vulnerability.

Affected Version(s)

Widgets for Social Photo Feed <= n/a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

NumeX | Patchstack Bug Bounty Program
.
CVE-2025-68595 : Missing Authorization Vulnerability in Trustindex Widgets for Social Photo Feed