Authorization Flaw in VibeThemes WPLMS Product
CVE-2025-58668
4.3MEDIUM
What is CVE-2025-58668?
A missing authorization vulnerability has been identified in VibeThemes' WPLMS product, allowing attackers to exploit improperly configured access control settings. Users utilizing WPLMS versions, including version 4.970 and earlier, are at risk. This vulnerability can lead to unauthorized access, potentially compromising sensitive data and functionalities. It is strongly recommended to review security configurations and implement updates to safeguard systems against these exploits.
Affected Version(s)
WPLMS <= 4.970