Beveiligingsadvies

CVE-2025-8085

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-09-08 06:00:04
Laatst bijgewerkt 2025-09-08 18:17:25
Toegewezen door WPScan
CVSS-score 8.6
Status PUBLISHED

Beschrijving

The Ditty WordPress plugin before 3.1.58 lacks authorization and authentication for requests to its displayItems endpoint, allowing unauthenticated visitors to make requests to arbitrary URLs.