CVE-2025-31872

Missing Authorization vulnerability in Galaxy Weblinks WP Clone any post type wp-clone-any-post-type allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Clone any post type: from n/a through <= 3.6.
Configurations

No configuration.

History

23 Apr 2026, 15:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

01 Apr 2026, 17:21

Type Values Removed Values Added
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/wp-clone-any-post-type/vulnerability/wordpress-wp-clone-any-post-type-plugin-3-4-broken-access-control-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/wp-clone-any-post-type/vulnerability/wordpress-wp-clone-any-post-type-plugin-3-4-broken-access-control-vulnerability?_s_id=cve -
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : unknown
Summary
  • (es) Vulnerabilidad de falta de autorización en Galaxy Weblinks WP Clone any post type permite explotar niveles de seguridad de control de acceso configurados incorrectamente. Este problema afecta a WP Clone desde la versión n/d hasta la 3.4.
Summary (en) Missing Authorization vulnerability in Galaxy Weblinks WP Clone any post type allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Clone any post type: from n/a through 3.4. (en) Missing Authorization vulnerability in Galaxy Weblinks WP Clone any post type wp-clone-any-post-type allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Clone any post type: from n/a through <= 3.6.

01 Apr 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-01 15:16

Updated : 2026-04-23 15:28


NVD link : CVE-2025-31872

Mitre link : CVE-2025-31872

CVE.ORG link : CVE-2025-31872


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization