Missing Authorization Vulnerability in BdThemes Element Pack Pro Plugin
CVE-2025-46258
5.4MEDIUM
What is CVE-2025-46258?
The BdThemes Element Pack Pro plugin for WordPress has a missing authorization vulnerability that could allow attackers to exploit incorrectly configured access control security levels. This flaw can impact users by enabling unauthorized access to sensitive features or data within the plugin. It is crucial for administrators to ensure they are using the latest version (8.0.0 or later) and to review access control configurations to mitigate the potential risks associated with this vulnerability.
Affected Version(s)
Element Pack Pro < 8.0.0