What is CVE-2026-15025?
CVE-2026-15025 is a Missing Authorization vulnerability found in the Uncanny Automator plugin for WordPress. It affects versions up to and including 7.3.2, allowing unauthorized access to certain API endpoints. Updating the plugin to the latest version is strongly recommended.
Azərbaycanca: CVE-2026-15025, WordPress üçün Uncanny Automator plaginində müəyyən edilmiş Missing Authorization zəifliyidir. Bu, 7.3.2 versiyasına qədər olan plaginlərdə müəyyən API endpoint-lərə autentifikasiyasız giriş imkanı yaradır. Təsirə məruz qalmamaq üçün plagini ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which versions of the Uncanny Automator plugin are affected by CVE-2026-15025?
This vulnerability affects all versions of the Uncanny Automator plugin up to and including version 7.3.2.
How can I protect against CVE-2026-15025?
To protect against this vulnerability, it is strongly recommended to update the Uncanny Automator plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.