Mikado Themes PawFriends WordPress Theme Authorization Bypass Vulnerability

Vulnerability

An authorization bypass vulnerability has been identified in the Mikado Themes PawFriends - Pet Shop and Veterinary WordPress Theme, affecting versions through 1.3. This vulnerability allows exploitation of incorrectly configured access control security levels, potentially leading to unauthorized access or actions.

Impact

Exploitation of this vulnerability could allow for insecure direct object references, enabling unauthorized access to sensitive files or database interactions.

Remediation

Users are advised to update to the latest version of the PawFriends WordPress theme. For those using Patchstack, a mitigation rule has been issued to block attacks until an official patch is available.

Added: Feb 20, 2026, 6:03 PM
Updated: Feb 20, 2026, 8:38 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
5.2
remediation
0.0
relevance
3.2
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.