CVE Details
Basic Information
| Title | CVE-2025-39447 |
|---|---|
| Type | cve |
| Published | 2025-05-19T19:15:49 |
| Last Seen | 2025-05-19T19:18:49 |
CVSS Information
| Base Score | 7.5 (HIGH) |
|---|---|
| Attack Vector | NETWORK |
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | NONE |
| Availability Impact | NONE |
AI Analysis
| AI Description | A missing authorization vulnerability in Crocoblock JetElements for Elementor allows unauthorized access to certain functionalities due to improper ACL constraints. This could enable attackers to access restricted features without proper permissions. The vulnerability is rated HIGH severity with a CVSS score of 7.5. |
|---|---|
| AI Severity | High |
| Vendor | WordPress Community |
| Product | Crocoblock JetElements for Elementor |
| Affected Version | Unspecified |
Additional Information
| CVE List | CVE-2025-39447 |
|---|---|
| CWE List | CWE-862 |
| Bulletin Family | cve |
Description
Missing Authorization vulnerability in Crocoblock JetElements For Elementor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects JetElements For Elementor:…
CVSS Score Summary
Base Score: %!f(string=#) (HIGH)