CVE-2025-49857Missing Authorization in Iqbal Mycred

Severity
N/A
No vector
EPSS
0.1%
top 69.47%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 17

Description

Missing Authorization vulnerability in Saad Iqbal myCred mycred allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects myCred: from n/a through <= 2.9.4.2.

Affected Packages1 packages

CVEListV5saad_iqbal/mycred2.9.4.2

🔴Vulnerability Details

2
GHSA
GHSA-vpjv-p7cp-xj9j: Missing Authorization vulnerability in WPExperts2025-06-17
CVEList
WordPress myCred plugin <= 2.9.4.2 - Broken Access Control Vulnerability2025-06-17
CVE-2025-49857 — Missing Authorization in Iqbal Mycred | cvebase