cleantalk
Vulnerabilities and Security Researches

WP Attachments, CVE-2025-62888

CVE, Research URL

CVE-2025-62888

Application

WP Attachments

Published on
Dec 31, 2025
Research Description
Missing Authorization vulnerability in Marco Milesi WP Attachments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Attachments: from n/a through 5.2.
Affected versions
max 5.2.
Status
vulnerable