PT-2025-49968 · Thimpress · Thimpress Thim Elementor Kit

Published

2025-12-09

·

Updated

2025-12-15

·

CVE-2025-67594

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions ThimPress Thim Elementor Kit versions through 1.3.3
Description An authorization bypass exists due to incorrectly configured access control security levels in ThimPress Thim Elementor Kit. This allows exploitation through user-controlled keys.
Recommendations Update ThimPress Thim Elementor Kit to a version newer than 1.3.3.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2025-67594

Affected Products

Thimpress Thim Elementor Kit