Access Control Vulnerability in AA-Team WZone WooZone Plugin
CVE-2026-25473

Currently unrated

Key Information:

Vendor

WordPress

Status
Vendor
CVE Published:
19 February 2026

What is CVE-2026-25473?

A missing authorization vulnerability exists in the AA-Team WZone WooZone Plugin, allowing attackers to exploit incorrectly configured access control security levels. This flaw could enable unauthorized access to sensitive functionalities, posing significant security risks for users of versions up to 14.0.31. It is crucial for site administrators to immediately review and address access control settings to mitigate potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

WZone <= n/a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Phat RiO | Patchstack Bug Bounty Program
.