Authorization Bypass Vulnerability in Jewel Theme Master Addons for Elementor
CVE-2025-63053

5.3MEDIUM

Key Information:

Vendor

WordPress

Vendor
CVE Published:
31 December 2025

What is CVE-2025-63053?

The Jewel Theme Master Addons for Elementor exhibits a vulnerability that allows unauthorized users to bypass access controls due to incorrectly configured security levels. This flaw creates opportunities for exploitation, allowing attackers to access restricted resources or perform actions without proper authorization. Affected versions include Master Addons for Elementor up to 2.0.9.9.4.

Affected Version(s)

Master Addons for Elementor 0 <= 2.0.9.9.4

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mdr | Patchstack Bug Bounty Program
.