CVE-2025-14998: CWE-639 Authorization Bypass Through User-Controlled Key in wpmudev Branda – White Label & Branding, Free Login Page Customizer
The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.24. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
AI Analysis
Technical Summary
The Branda – White Label & Branding, Free Login Page Customizer WordPress plugin contains an authorization bypass vulnerability (CWE-639) due to improper validation of user identity before password updates. This allows unauthenticated attackers to change any user's password, including administrators, enabling privilege escalation and account takeover. The vulnerability has a CVSS 3.1 base score of 9.8, indicating critical severity with network attack vector, no required privileges or user interaction, and full confidentiality, integrity, and availability impact. No patch or official fix information is provided in the available data.
Potential Impact
Successful exploitation results in complete compromise of user accounts, including administrative accounts, allowing attackers to fully control the affected WordPress site. This includes unauthorized access, modification, and potential disruption of site operations.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict access to the plugin and monitor for suspicious activity. Consider disabling the plugin if possible to prevent exploitation.
CVE-2025-14998: CWE-639 Authorization Bypass Through User-Controlled Key in wpmudev Branda – White Label & Branding, Free Login Page Customizer
Description
The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.24. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
CVSS v3.1
Score 9.8critical
Affected software
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Branda – White Label & Branding, Free Login Page Customizer WordPress plugin contains an authorization bypass vulnerability (CWE-639) due to improper validation of user identity before password updates. This allows unauthenticated attackers to change any user's password, including administrators, enabling privilege escalation and account takeover. The vulnerability has a CVSS 3.1 base score of 9.8, indicating critical severity with network attack vector, no required privileges or user interaction, and full confidentiality, integrity, and availability impact. No patch or official fix information is provided in the available data.
Potential Impact
Successful exploitation results in complete compromise of user accounts, including administrative accounts, allowing attackers to fully control the affected WordPress site. This includes unauthorized access, modification, and potential disruption of site operations.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict access to the plugin and monitor for suspicious activity. Consider disabling the plugin if possible to prevent exploitation.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- Wordfence
- Date Reserved
- 2025-12-20T15:01:44.895Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 695843a1db813ff03e04a584
Added to database: 01/02/2026, 22:16:01 UTC
Last enriched: 04/09/2026, 09:55:09 UTC
Last updated: 09/10/2026, 19:36:49 UTC
Views: 382
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.