Beveiligingsadvies

CVE-2025-8944

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-09-05 06:00:02
Laatst bijgewerkt 2025-09-05 16:09:21
Toegewezen door WPScan
CVSS-score 4.3
Status PUBLISHED

Beschrijving

The OceanWP WordPress theme before 4.1.2 is vulnerable to an option update due to a missing capability check on one of its AJAX request handler, allowing any authenticated users, such as subscriber to update the darkMod` setting.