CVE-2025-24584

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 27, 2025
CWE ID 862

Summary

CVE-2025-24584 is a new vulnerability disclosed in BdThemes Ultimate Store Kit Elementor Addons. This missing authorization issue enables unauthorized access, allowing attackers to exploit incorrectly configured security levels. The flaw impacts versions of Ultimate Store Kit Elementor Addons from n/a to 2.3.0. By exploiting this vulnerability, an attacker can gain unauthorized access and potentially disrupt or compromise the targeted system. Organizations using the affected software are advised to update to the latest, secure version as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share