PatchSiren

rhewlif CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM rhewlif CVE published 2026-06-26

CVE-2025-64636

CVE-2025-64636 is a MEDIUM-severity vulnerability in Donation Thermometer plugin versions <= 2.2.7. It allows unauthenticated Broken Access Control, enabling attackers to potentially access sensitive information. Defenders should assess exposure, prioritize remediation, and verify plugin versions.