NOMISEC-Nxploited/CVE-2025-8570

NOMISEC WORKING POC
Exploit for CVE-2025-8570 - BeyondCart Connector <2.1.0 - Privilege Escalation
AI Analysis

The repository contains a functional Python exploit for CVE-2025-8570, which targets a JWT secret misconfiguration in the BeyondCart Connector WordPress plugin, allowing unauthenticated privilege escalation to administrator.

Attack Type
auth_bypass
Complexity
moderate
Reliability
reliable
MITRE ATT&CK
T1550.001 - Application Access Token
Loading exploit code...
Download ZIP Password: eip
Source
Platform Nomisec
Type poc
Files 4
Stars 0
Forks 0
Last Push Sep 11, 2025
Vulnerability
CVE-2025-8570
BeyondCart Connector <2.1.0 - Privilege Escalation
CRITICAL
CVSS 9.8