CVE-2025-13414

The Chamber Dashboard Business Directory plugin for WordPress is vulnerable to unauthorized data export due to a missing capability check on the cdash_watch_for_export() function in all versions up to, and including, 3.3.11. This makes it possible for unauthenticated attackers to export business directory information, including sensitive business details.
Configurations

No configuration.

History

25 Nov 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-25 08:15

Updated : 2025-11-25 22:16


NVD link : CVE-2025-13414

Mitre link : CVE-2025-13414

CVE.ORG link : CVE-2025-13414


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization