Mikado Themes PawFriends WordPress Theme Authorization Bypass Vulnerability
Vulnerability
An authorization bypass vulnerability has been identified in the Mikado Themes PawFriends - Pet Shop and Veterinary WordPress Theme, affecting versions through 1.3. This vulnerability allows exploitation of incorrectly configured access control security levels, potentially leading to unauthorized access or actions.
Impact
Exploitation of this vulnerability could allow for insecure direct object references, enabling unauthorized access to sensitive files or database interactions.
Remediation
Users are advised to update to the latest version of the PawFriends WordPress theme. For those using Patchstack, a mitigation rule has been issued to block attacks until an official patch is available.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
