CVE-2025-24584
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2025-24584 is a new vulnerability disclosed in BdThemes Ultimate Store Kit Elementor Addons. This missing authorization issue enables unauthorized access, allowing attackers to exploit incorrectly configured security levels. The flaw impacts versions of Ultimate Store Kit Elementor Addons from n/a to 2.3.0. By exploiting this vulnerability, an attacker can gain unauthorized access and potentially disrupt or compromise the targeted system. Organizations using the affected software are advised to update to the latest, secure version as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.