CVE-2025-24734

WordPress Better Find and Replace plugin <= 1.6.7 - Privilege Escalation vulnerability

Missing Authorization vulnerability in CodeSolz Better Find and Replace allows Privilege Escalation. This issue affects Better Find and Replace: from n/a through 1.6.7.


We have discovered 9,161 live websites that are affected by CVE-2025-24734.

Test my site




Affected Software

Product  Real Time Auto Find And Replace
Category Wordpress Plugins
Vulnerable Domains9,161 live websites (72.19% of Real Time Auto Find And Replace install base)
Vulnerable Versions
  • from 0 through 1.6.7
Vulnerable Versions Count60 versions ( 96.77% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jan 27, 2025
  • Updated - Feb 12, 2025

Credits

  • Ananda Dhakal (Patchstack) (finder)

CVE-2025-24734 usage by Country

United States4,582 websites



Germany705 websites
GB577 websites
France287 websites
Cyprus257 websites
Japan186 websites
Australia173 websites
Russia170 websites
Italy164 websites
Netherlands154 websites

CVE-2025-24734 usage by TLD

.com4,610 websites
.co.uk541 websites
.org468 websites
.com.au269 websites
.net246 websites
.de197 websites
.it155 websites
.ca154 websites
.nl133 websites
.ru123 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-24734

Top websites that are affected by CVE-2025-24734. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***********************.com United States*,***
***.com United States*,***
****************.com United States*,***
************.com United States**,***
*****.com United States**,***
*****.com United States**,***
**********.com United States**,***
***********.org United States**,***
*************.com United States**,***
**********.com United States**,***
See full domain list

FAQ

CVE-2025-24734 is Missing Authorization in Real Time Auto Find And Replace
A total of 9,161 websites have been identified as vulnerable to CVE-2025-24734, discovered through global website indexing conducted by WebTechSurvey.
Real Time Auto Find And Replace is susceptible to CVE-2025-24734 vulnerability.
Real Time Auto Find And Replace versions before, and including, 1.6.7 are vulnerable to CVE-2025-24734.