{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-04T15:03:29.070","vulnerabilities":[{"cve":{"id":"CVE-2025-31752","sourceIdentifier":"audit@patchstack.com","published":"2025-04-01T15:16:11.690","lastModified":"2026-06-17T09:10:53.240","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Missing Authorization vulnerability in termel Bulk Fields Editor bulk-user-editor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bulk Fields Editor: from n/a through <= 1.8.0."},{"lang":"es","value":"La vulnerabilidad de falta de autorización en termel Bulk Fields Editor permite explotar niveles de seguridad de control de acceso configurados incorrectamente. Este problema afecta al editor de campos masivos desde la versión n/d hasta la 1.8.0."}],"affected":[{"source":"audit@patchstack.com","affectedData":[{"vendor":"termel","product":"Bulk Fields Editor","defaultStatus":"unaffected","collectionURL":"https://wordpress.org/plugins","packageName":"bulk-user-editor","versions":[{"version":"0","lessThanOrEqual":"1.8.0","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"audit@patchstack.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N","baseScore":4.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":1.4}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2025-04-01T20:32:48.354644Z","id":"CVE-2025-31752","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"audit@patchstack.com","type":"Secondary","description":[{"lang":"en","value":"CWE-862"}]}],"references":[{"url":"https://patchstack.com/database/Wordpress/Plugin/bulk-user-editor/vulnerability/wordpress-bulk-fields-editor-plugin-1-8-0-broken-access-control-vulnerability?_s_id=cve","source":"audit@patchstack.com"}]}}]}