Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes Backpack Traveler backpacktraveler allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Backpack Traveler: from n/a through <= 2.10.3.
Metrics
Affected Vendors & Products
References
History
Thu, 29 Jan 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Qodeinteractive
Qodeinteractive backpack Traveler |
|
| CPEs | cpe:2.3:a:qodeinteractive:backpack_traveler:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Qodeinteractive
Qodeinteractive backpack Traveler |
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 05 Jan 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mikado-themes
Mikado-themes backpack Traveler Wordpress Wordpress wordpress |
|
| Vendors & Products |
Mikado-themes
Mikado-themes backpack Traveler Wordpress Wordpress wordpress |
Fri, 02 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 30 Dec 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes Backpack Traveler backpacktraveler allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Backpack Traveler: from n/a through <= 2.10.3. | |
| Title | WordPress Backpack Traveler theme <= 2.10.3 - Insecure Direct Object References (IDOR) vulnerability | |
| Weaknesses | CWE-639 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-12-30T10:47:56.911Z
Updated: 2026-01-20T14:28:29.543Z
Reserved: 2025-12-29T11:18:35.617Z
Link: CVE-2025-69030
Updated: 2026-01-02T22:01:17.301Z
Status : Analyzed
Published: 2025-12-30T11:16:01.590
Modified: 2026-01-29T16:18:46.883
Link: CVE-2025-69030
No data.