CVE-2026-24520: Bplugins Tiktok Feed

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in bPlugins Tiktok Feed allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Tiktok Feed: from n/a through 1.0.24.

Affected products

  • Bplugins Tiktok Feed: up to and including 1.0.24

Published 2026-05-26. Last modified 2026-07-24.