Missing Authorization in CodexThemes TheGem Product by CodexThemes
CVE-2025-60096
5.4MEDIUM
What is CVE-2025-60096?
A missing authorization vulnerability in CodexThemes TheGem (Elementor) allows attackers to exploit incorrectly configured access control security levels. This flaw affects versions from n/a up to 5.10.5, potentially enabling unauthorized actions on the site. Proper security measures and timely updates are crucial to mitigate this vulnerability.
Affected Version(s)
TheGem (Elementor) <= 5.10.5