CVE-2025-58606: WordPress SaasLauncher Theme <= 1.3.0 - Broken Access Control Vulnerability
Missing Authorization vulnerability in CozyThemes SaasLauncher allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects SaasLauncher: from n/a through 1.3.0.
Other sources
Missing Authorization vulnerability in cozythemes SaasLauncher saaslauncher allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SaasLauncher: from n/a through <= 1.3.0.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58606?
CVE-2025-58606 is classified as a high-severity vulnerability due to its potential impact on unauthorized access.
How do I fix CVE-2025-58606?
To fix CVE-2025-58606, ensure that proper access control security levels are configured in CozyThemes SaasLauncher.
Who is affected by CVE-2025-58606?
CVE-2025-58606 affects users of CozyThemes SaasLauncher and the WordPress SaasLauncher Theme up to version 1.3.0.
What type of vulnerability is CVE-2025-58606?
CVE-2025-58606 is a missing authorization vulnerability that allows exploitation of incorrectly configured access control levels.
Can CVE-2025-58606 lead to data breaches?
Yes, CVE-2025-58606 can lead to data breaches as it may allow unauthorized users to gain access to restricted resources.