CVE Database /
CVE-2025-49922
CVE · Medium
CVE-2025-49922 — WPeMatico RSS Feed Fetcher [wpematico] < 2.8.4
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-49922
|
WPeMatico RSS Feed Fetcher [wpematico] < 2.8.4 |
Missing Authorization |
Medium
4.3
|
< 2.8.4
|
2.8.4 |
2025-05-29 |
—
|
CVE-2025-49922
The WPeMatico RSS Feed Fetcher plugin for WordPress contains a security flaw that allows users with higher than basic account permissions to bypass intended restrictions on certain actions. This vulnerability affects all versions of the plugin up to 2.8.3, allowing attackers to execute unauthorized operations.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings