Untriaged
Permalink
CVE-2025-52803
7.5 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): NONE
- Integrity impact (I): HIGH
- Availability impact (A): NONE
WordPress Sala theme <= 1.1.3 - Broken Access Control Vulnerability
Missing Authorization vulnerability in uxper Sala allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Sala: from n/a through 1.1.3.
References
Affected products
sala
- =<1.1.3
Matching in nixpkgs
pkgs.python312Packages.datasalad
Pure-Python library with a collection of utilities for working with Git and git-annex
-
nixos-unstable -
- nixpkgs-unstable 0.5.0
pkgs.python313Packages.datasalad
Pure-Python library with a collection of utilities for working with Git and git-annex
-
nixos-unstable -
- nixpkgs-unstable 0.5.0
pkgs.python312Packages.schema-salad
Semantic Annotations for Linked Avro Data
-
nixos-unstable -
- nixpkgs-unstable 8.9.20250723145140
pkgs.python313Packages.schema-salad
Semantic Annotations for Linked Avro Data
-
nixos-unstable -
- nixpkgs-unstable 8.9.20250723145140
Package maintainers
-
@gador Florian Brandes <florian.brandes@posteo.de>
-
@veprbl Dmitry Kalinkin <veprbl@gmail.com>