CVE Database /
CVE-2025-66129
CVE · Medium
CVE-2025-66129 — Pochipp [pochipp] < 1.18.1
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-66129
|
Pochipp [pochipp] < 1.18.1 |
Missing Authorization |
Medium
5.3
|
< 1.18.1
|
1.18.1 |
2025-12-14 |
—
|
CVE-2025-66129
A security flaw exists within the Pochipp plugin for WordPress, affecting versions prior to or equal to 1.18.0. The issue arises from a lack of capability verification in certain functions, allowing unverified users to execute unintended actions without proper authorization. This vulnerability enables malicious actors to bypass usual access controls and perform unauthorized operations.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings