Missing Authorization vulnerability in ThemeAtelier IDonate idonate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects IDonate: from n/a through <= 2.1.15.
References
Configurations
History
12 Dec 2025, 12:30
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://vdp.patchstack.com/database/Wordpress/Plugin/idonate/vulnerability/wordpress-idonate-plugin-2-1-15-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory | |
| CPE | cpe:2.3:a:themeatelier:idonate:*:*:*:*:*:wordpress:*:* | |
| First Time |
Themeatelier idonate
Themeatelier |
09 Dec 2025, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
09 Dec 2025, 16:18
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-09 16:18
Updated : 2025-12-12 12:30
NVD link : CVE-2025-67583
Mitre link : CVE-2025-67583
CVE.ORG link : CVE-2025-67583
JSON object : View
Products Affected
themeatelier
- idonate
CWE
CWE-862
Missing Authorization
