CVE-2025-22787

Published Jan 15, 2025

Last updated 10 months ago

Overview

Description
Missing Authorization vulnerability in bPlugins LLC Button Block allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Button Block: from n/a through 1.1.5.
Source
audit@patchstack.com
NVD status
Analyzed
Products
button_block

Risk scores

CVSS 3.1

Type
Primary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

audit@patchstack.com
CWE-862

Social media

Hype score
Not currently trending

Configurations