Permalink
CVE-2025-26867
5.3 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): NONE
- Integrity impact (I): LOW
- Availability impact (A): NONE
WordPress Bulk theme <= 1.0.11 - Broken Access Control vulnerability
Missing Authorization vulnerability in Themes4WP Bulk allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Bulk: from n/a through 1.0.11.
References
Affected products
bulk
- =<1.0.11
Matching in nixpkgs
pkgs.bulk_extractor
Digital forensics tool for extracting information from file systems
-
nixos-unstable -
- nixpkgs-unstable 2.1.1
pkgs.python312Packages.rebulk
Advanced string matching from simple patterns
-
nixos-unstable -
- nixpkgs-unstable 3.2.0
pkgs.python313Packages.rebulk
Advanced string matching from simple patterns
-
nixos-unstable -
- nixpkgs-unstable 3.2.0
Package maintainers
-
@D3vil0p3r Antonio Voza <vozaanthony@gmail.com>
-
@mkg20001 Maciej Krüger <mkg20001+nix@gmail.com>
-
@bobby285271 Bobby Rong <rjl931189261@126.com>