Access Control Flaw in WP Chill Passster Content-Protector by WordPress
CVE-2026-25036
6.5MEDIUM
What is CVE-2026-25036?
The WP Chill Passster Content-Protector has a vulnerability related to missing authorization, allowing attackers to exploit misconfigured access control security levels. This issue affects all versions up to and including 4.2.25, potentially granting unauthorized access to sensitive content. It's crucial for site owners using this plugin to reassess their settings and apply proper security measures to protect against unauthorized access.
Affected Version(s)
Passster 0 <= 4.2.25