First published: Thu Mar 27 2025(Updated: )
Missing Authorization vulnerability in Shinetheme Traveler.This issue affects Traveler: from n/a through 3.1.8.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Traveler | >=3.1.8 | |
WordPress Traveler | <=3.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26733 is classified as a missing authorization vulnerability in the Shinetheme Traveler, which can lead to unauthorized access.
To fix CVE-2025-26733, update the Shinetheme Traveler to a version beyond 3.1.8 to ensure proper access controls are in place.
CVE-2025-26733 affects Traveler versions from n/a through 3.1.8.
If unable to update, consider implementing additional security measures such as access control lists or monitoring to mitigate unauthorized access.
You can determine if your site is vulnerable to CVE-2025-26733 by checking if you are using the Shinetheme Traveler theme version 3.1.8 or earlier.