Broken Access Control in Themeum Qubely Plugin by Themeum
CVE-2025-58663
4.3MEDIUM
What is CVE-2025-58663?
The Themeum Qubely plugin has been identified to have a missing authorization vulnerability that stems from improperly configured access control security levels. This gap can lead to unauthorized access to certain features and functionalities within the plugin, putting websites at risk of exploitation. Affected versions include all prior to 1.8.14, making it crucial for users to promptly update their installations to mitigate potential threats.
Affected Version(s)
Qubely <= 1.8.14