CVE-2025-1262

The Advanced Google reCaptcha plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.27 . This makes it possible for unauthenticated attackers to bypass the Built-in Math Captcha Verification.
Configurations

Configuration 1 (hide)

cpe:2.3:a:webfactoryltd:advanced_google_recaptcha:*:*:*:*:*:wordpress:*:*

History

28 Feb 2025, 01:30

Type Values Removed Values Added
Summary
  • (es) El complemento Advanced Google reCaptcha para WordPress es vulnerable a CAPTCHA Bypass en versiones hasta la 1.27 incluida. Esto permite que atacantes no autenticados eludan la verificación de captcha matemática integrada.
CPE cpe:2.3:a:webfactoryltd:advanced_google_recaptcha:*:*:*:*:*:wordpress:*:*
CWE NVD-CWE-Other
First Time Webfactoryltd advanced Google Recaptcha
Webfactoryltd
References () https://plugins.trac.wordpress.org/changeset/3244677/advanced-google-recaptcha - () https://plugins.trac.wordpress.org/changeset/3244677/advanced-google-recaptcha - Patch
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/d553aab2-d441-46d6-9c01-5dcfdc48674f?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/d553aab2-d441-46d6-9c01-5dcfdc48674f?source=cve - Third Party Advisory

25 Feb 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-25 13:15

Updated : 2025-02-28 01:30


NVD link : CVE-2025-1262

Mitre link : CVE-2025-1262

CVE.ORG link : CVE-2025-1262


JSON object : View

Products Affected

webfactoryltd

  • advanced_google_recaptcha
CWE
CWE-804

Guessable CAPTCHA

NVD-CWE-Other