Missing Authorization vulnerability in flowdee ClickWhale allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects ClickWhale: from n/a through 2.4.6.
References
Configurations
History
23 May 2025, 12:23
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:flowdee:clickwhale:*:*:*:*:*:wordpress:*:* | |
| First Time |
Flowdee
Flowdee clickwhale |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| References | () https://patchstack.com/database/wordpress/plugin/clickwhale/vulnerability/wordpress-clickwhale-2-4-6-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory |
07 May 2025, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-07 15:16
Updated : 2025-05-23 12:23
NVD link : CVE-2025-47612
Mitre link : CVE-2025-47612
JSON object : View
Products Affected
flowdee
- clickwhale
CWE
CWE-862
Missing Authorization
