CVE-2025-12630

The Upload.am WordPress plugin before 1.0.1 is vulnerable to arbitrary option disclosure due to a missing capability check on its AJAX request handler, allowing users such as contributor to view site options.
Configurations

No configuration.

History

No history.

Information

Published : 2025-12-02 16:15

Updated : 2026-06-17 08:32


NVD link : CVE-2025-12630

Mitre link : CVE-2025-12630

CVE.ORG link : CVE-2025-12630


JSON object : View

Products Affected

No product.

CWE

No CWE.