CVE-2025-68071: WordPress Essential Real Estate plugin <= 5.3.2 - Insecure Direct Object References (IDOR) vulnerability
Authorization Bypass Through User-Controlled Key vulnerability in g5theme Essential Real Estate essential-real-estate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Real Estate: from n/a through <= 5.3.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-68071?
CVE-2025-68071 is classified as a high severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2025-68071?
To fix CVE-2025-68071, ensure you update the Essential Real Estate plugin to the latest version beyond 5.2.2.
What is the impact of CVE-2025-68071?
The impact of CVE-2025-68071 includes unauthorized access to restricted areas of the Essential Real Estate plugin.
Who is affected by CVE-2025-68071?
CVE-2025-68071 affects users of the Essential Real Estate plugin version 5.2.2 and earlier.
Is CVE-2025-68071 being actively exploited?
As of the latest information available, there is no indication that CVE-2025-68071 is being actively exploited, but it is recommended to address it promptly.