CVE-2025-39352: WordPress Grand Restaurant WordPress theme <= 7.0 - Arbitrary Options Deletion vulnerability
Missing Authorization vulnerability in ThemeGoods Grand Restaurant grandrestaurant allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grand Restaurant: from n/a through <= 7.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-39352?
CVE-2025-39352 is considered a high severity vulnerability due to its potential for unauthorized access and data manipulation.
How do I fix CVE-2025-39352?
To fix CVE-2025-39352, update the ThemeGoods Grand Restaurant WordPress theme to the latest version above 7.0.
What are the impacts of CVE-2025-39352?
The impact of CVE-2025-39352 includes the possibility of unauthorized users exploiting access control misconfigurations to gain elevated privileges.
Which versions of the Grand Restaurant theme are affected by CVE-2025-39352?
CVE-2025-39352 affects all versions of the Grand Restaurant theme up to and including version 7.0.
Who is vulnerable to CVE-2025-39352?
Anyone using the ThemeGoods Grand Restaurant WordPress theme version 7.0 or earlier is vulnerable to CVE-2025-39352.