CVE-2025-31539
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Mar 31, 2025
Updated: Apr 1, 2025
CWE ID 862
Summary
CVE-2025-31539 is a critical authorization vulnerability affecting the Blocksera Cryptocurrency Widgets Pack. Malicious actors can exploit incorrectly configured access control security levels, gaining unauthorized access to the affected systems. This issue poses a significant risk for all versions of the Cryptocurrency Widgets Pack from n/a through 2.0.1. Organizations using this software are urged to apply necessary patches or upgrades as soon as possible to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.