CVE Database /
CVE-2025-63065
CVE · Medium
CVE-2025-63065 — Media Library Assistant [media-library-assistant] < 3.30
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-63065
|
Media Library Assistant [media-library-assistant] < 3.30 |
Authorization Bypass Through User-Controlled Key |
Medium
5.3
|
< 3.30
|
3.30 |
2025-10-09 |
—
|
CVE-2025-63065
A security flaw exists in the Media Library Assistant plugin, where an attacker can bypass access controls by manipulating a user-controlled parameter, potentially leading to unauthorized actions being performed within the plugin's configuration settings. This vulnerability is linked to incorrectly set security levels and affects all versions of the plugin up to 3.29, although a specific range of affected versions is not specified.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings