WordPress WPCargo Track & Trace plugin <= 8.0.2 - Insecure Direct Object References (IDOR) vulnerability
Vulnerability Description
Missing Authorization vulnerability in Arni Cinco WPCargo Track & Trace wpcargo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPCargo Track & Trace: from n/a through <= 8.0.2.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-31609
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- hunter85 | Patchstack Bug Bounty Program
More from Arni Cinco
View All →Affected Vendor
Arni Cinco
View all reports →