cleantalk
Vulnerabilities and Security Researches

Image Sizes Controller, Create Custom Image Sizes, Disable Image Sizes, CVE-2025-49973

CVE, Research URL

CVE-2025-49973

Published on
Jun 20, 2025
Research Description
Missing Authorization vulnerability in GrandPlugins Image Sizes Controller, Create Custom Image Sizes, Disable Image Sizes allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Image Sizes Controller, Create Custom Image Sizes, Disable Image Sizes: from n/a through 1.0.9.
Affected versions
Min -, max 1.0.10.
Status
vulnerable