Missing Authorization in WooCommerce Gutenberg Theme by AgniHD
CVE-2025-69385
6.5MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 20 February 2026
What is CVE-2025-69385?
A missing authorization vulnerability exists in the AgniHD Cartify theme for WooCommerce, where incorrect access control configurations could allow unauthorized access. This issue affects versions of the Cartify theme up to 1.3, leading to potential exploitation through inadequate security measures, allowing users to carry out actions without proper permissions.
Affected Version(s)
Cartify - WooCommerce Gutenberg WordPress Theme 0 <= 1.3