CVE-2025-30881

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Mar 27, 2025
CWE ID 862

Summary

CVE-2025-30881 is a critical vulnerability affecting ThemeHunk Big Store, where access control security levels are incorrectly configured, leading to a Missing Authorization issue. An attacker can exploit this vulnerability, present in Big Store versions 2.0.8 and earlier, to gain unauthorized access and potentially compromise the system. This misconfiguration could put sensitive data and system integrity at risk. Users are strongly urged to update to the latest version or implement alternative security measures to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share