CVE-2025-58969
WordPress Custom Login URL Plugin <= 1.0.2 - Broken Access Control Vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Missing Authorization vulnerability in Greg Winiarski Custom Login URL custom-login-url allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Custom Login URL: from n/a through <= 1.0.2.
| CWE | CWE-862 |
| Vendor | greg winiarski |
| Product | custom login url |
| Published | Sep 22, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for greg winiarski custom login url
Be the first to know when new unknown vulnerabilities affecting greg winiarski custom login url are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Greg Winiarski / Custom Login URL
0 โค 1.0.2
References
Credits
Nabil Irawan | Patchstack Bug Bounty Program