CVE-2025-30974

WordPress Post Grid Master <= 3.4.13 - Broken Access Control Vulnerability

Missing Authorization vulnerability in Akhtarujjaman Shuvo Post Grid Master allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Post Grid Master: from n/a through 3.4.13.


We have discovered 584 live websites that are affected by CVE-2025-30974.

Run a Free Instant Scan




Affected Software

Product  Ajax Filter Posts
Category Wordpress Plugins
Vulnerable Domains584 live websites (100% of Ajax Filter Posts install base)
Vulnerable Versions
  • from 0 through 3.4.13
Vulnerable Versions Count16 versions ( 100% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jun 6, 2025
  • Updated - Jun 6, 2025

Credits

  • muhammad yudha (Patchstack Alliance) (finder)

Website Distribution by Country

Number of websites using CVE-2025-30974
United States305 websites



Germany64 websites
France30 websites
GB23 websites
Netherlands15 websites
Switzerland14 websites
Cyprus13 websites
Italy10 websites
Australia8 websites
Singapore8 websites

Website Distribution by TLD

Number of websites using CVE-2025-30974
.com281 websites
.de42 websites
.org41 websites
.ca14 websites
.co.uk14 websites
.ch13 websites
.com.au13 websites
.fr11 websites
.net10 websites
.it9 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2025-30974

Top websites that are affected by CVE-2025-30974. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
************.com United States**,***
***************.fi Finland**,***
****************.net United States***,***
*********.com United States***,***
*****.de Germany***,***
****************.org United States***,***
************.com United States***,***
*****.**********.edu Kenya***,***
****.*******.gr Greece***,***
**************.org United States***,***
See full domain list

FAQ

CVE-2025-30974 is Missing Authorization in Ajax Filter Posts
A total of 584 websites have been identified as vulnerable to CVE-2025-30974, based on global website indexing conducted by WebTechSurvey.
The Ajax Filter Posts is affected by the CVE-2025-30974 vulnerability.
Ajax Filter Posts versions up to and including 3.4.13 are vulnerable to CVE-2025-30974.