mkscripts Download After Email Missing Authorization Vulnerability

Vulnerability

A missing authorization vulnerability has been identified in the mkscripts Download After Email WordPress plugin, specifically in versions 2.1.5 through 2.1.6. This vulnerability arises from incorrectly configured access control security levels, allowing unauthorized access to certain features or data.

Impact

Exploitation of this vulnerability could lead to unauthorized access or actions within the WordPress site, potentially allowing attackers to manipulate or access data they should not be able to.

Added: Dec 18, 2025, 9:29 AM
Updated: Dec 18, 2025, 4:40 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
6.6
remediation
0.0
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.