
CVE-2025-11754 The GDPR Cookie Consent plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'gdpr/v1/settings' REST API endpoin… https://www.cve.org/CVERecord?id=CVE-2025-11754
Post summary
The GDPR Cookie Consent plugin for WordPress has a missing capability check on its REST API endpoint, enabling unauthorized data access.
