plugin

Windows Azure Storage Vulnerabilities

1 known security issue reported for the Windows Azure Storage WordPress plugin. Most recent disclosed Oct 23, 2025.

1 medium

Running Windows Azure Storage on your site? Check whether your installed version is affected.

Scan your site free

Microsoft Azure Storage for WordPress <= 4.5.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Media Deletion

medium

The Microsoft Azure Storage for WordPress plugin for WordPress is vulnerable to Unauthorized Arbitrary Media Deletion in all versions up to, and including, 4.5.1. This is due to missing capability checks on the 'azure-storage-media-replace' AJAX action. This makes it possible for authenticated attackers with subscriber...

CVSS:
5.4
Affected:
up to 4.5.1
Fixed in:
4.5.2
Disclosed:
Oct 23, 2025

CVE-2025-10749 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database