PT-2025-49968 · Thimpress · Thimpress Thim Elementor Kit

CVE-2025-67594

·

Published

2025-12-09

·

Updated

2025-12-15

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions ThimPress Thim Elementor Kit versions through 1.3.3
Description An authorization bypass exists due to incorrectly configured access control security levels in ThimPress Thim Elementor Kit. This allows exploitation through user-controlled keys.
Recommendations Update ThimPress Thim Elementor Kit to a version newer than 1.3.3.

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-67594

Affected Products

Thimpress Thim Elementor Kit