VYPR
Medium severity5.3NVD Advisory· Published Dec 31, 2025· Updated Apr 28, 2026

CVE-2025-62081

CVE-2025-62081

Description

Missing Authorization vulnerability in Channelize.io Team Live Shopping & Shoppable Videos For WooCommerce live-shopping-video-streams allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Live Shopping & Shoppable Videos For WooCommerce: from n/a through <= 2.2.0.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Missing authorization in Live Shopping & Shoppable Videos for WooCommerce plugin allows attackers to exploit broken access control, affecting versions up to 2.2.0.

The vulnerability is a missing authorization (broken access control) in the Channelize.io Team plugin 'Live Shopping & Shoppable Videos For WooCommerce'. It affects versions from n/a through 2.2.0 [1].

Exploitation requires no authentication; an attacker can access functions that should be restricted to higher-privileged users [1].

Impact: An unprivileged attacker can execute higher privileged actions, leading to potential data exposure or site compromise. This type of vulnerability is often used in mass-exploit campaigns [1].

Mitigation: Update to a patched version if available; if not, contact hosting provider. Immediate update is recommended [1].

AI Insight generated on May 19, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.