CVE-2025-49974
Description
Missing Authorization vulnerability in upstreamplugin UpStream: a Project Management Plugin for WordPress upstream allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects UpStream: a Project Management Plugin for WordPress: from n/a through <= 2.1.1.
CWE
- CWE-862 — Missing Authorization
Affected
- upstreamplugin / UpStream: a Project Management Plugin for WordPress — v=0 ≤2.1.1 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/49xxx/CVE-2025-49974.json