cleantalk
Vulnerabilities and Security Researches

WordPress REST API Authentication, CVE-2025-39545

CVE, Research URL

CVE-2025-39545

Published on
Apr 16, 2025
Research Description
Missing Authorization vulnerability in miniOrange WordPress REST API Authentication allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WordPress REST API Authentication: from n/a through 3.6.3.
Affected versions
Min -, max 3.6.4.
Status
vulnerable