CVE 6.5 MEDIUM

WordPress Jock On Air Now (JOAN) plugin <= 6.0.4 - Broken Access Control vulnerability_CVE-2025-58986

6.5 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

Description

Missing Authorization vulnerability in ganddser Jock On Air Now (JOAN) joan allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Jock On Air Now (JOAN): from n/a through <= 6.0.4.

Basic Information

ID CVE-2025-58986
Source Patchstack
Published Nov 6, 2025 at 15:54
Modified Nov 17, 2025 at 16:11

Affected Product

Vendor ganddser
Product Jock On Air Now (JOAN)
Version n/a
Affected Versions ganddser Jock On Air Now (JOAN) n/a

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.