CVE-2025-15485
Auto x LINE <= 1.0.0 – Unauthenticated REST API Endpoints Call
HIGH 8.2EPSS 0.2%
The Auto x LINE WordPress plugin through 1.0.0 does not have authorization checks in some of its REST endpoints, allowing unauthenticated users to call them and update the plugin settings, clear logs etc
- Affected
- Auto x LINE
- CVSS v3.1 WPSCAN
- 8.2 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N - EPSS
- 0.20% chance of exploitation in the next 30 days, 10th percentile
- Published
- 2026-09-02