CVE-2025-30881
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Mar 27, 2025
CWE ID 862
Summary
CVE-2025-30881 is a critical vulnerability affecting ThemeHunk Big Store, where access control security levels are incorrectly configured, leading to a Missing Authorization issue. An attacker can exploit this vulnerability, present in Big Store versions 2.0.8 and earlier, to gain unauthorized access and potentially compromise the system. This misconfiguration could put sensitive data and system integrity at risk. Users are strongly urged to update to the latest version or implement alternative security measures to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Themehunk