CVE-2025-2876 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The MelaPress Login Security and MelaPress Login Security Premium plugins for WordPress is vulnerable to unauthorized loss of data due to a missing capability c…
Medium CVSS: 5.3

CVE-2025-2876

The MelaPress Login Security and MelaPress Login Security Premium plugins for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'monitor_admin_actions' function in version 2.1.0. This makes it possible for unauthenticated attackers to delete any user.
Vendor
Melapress
Product
Melapress Login Security
CWE
CWE-862
Yayın Tarihi
2025-04-08 12:15:16
Güncelleme
2025-07-17 18:15:22
Source Identifier
security@wordfence.com
KEV Date Added
-

Kategoriler

Referanslar