← back
CVE-2025-15485highCWE-862

Auto x LINE <= 1.0.0 – Unauthenticated REST API Endpoints Call

41Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendcvss 8.2epss 0.2%
exploitation probability
0.2%top 89% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The Auto x LINE WordPress plugin through 1.0.0 does not have authorization checks in some of its REST endpoints, allowing unauthenticated users to call them and update the plugin settings, clear logs etc
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Affected products
Unknown · Auto x LINE
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.