CVE-2025-58663: WordPress Qubely Plugin <= 1.8.14 - Broken Access Control Vulnerability
Missing Authorization vulnerability in Themeum Qubely allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Qubely: from n/a through 1.8.14.
Other sources
Missing Authorization vulnerability in Themeum Qubely qubely allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Qubely: from n/a through <= 1.8.14.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58663?
CVE-2025-58663 is considered a high severity vulnerability due to its potential for unauthorized access and exploitation.
How do I fix CVE-2025-58663?
To fix CVE-2025-58663, update the Themeum Qubely plugin to the latest version beyond 1.8.14.
What types of systems are affected by CVE-2025-58663?
CVE-2025-58663 affects the Themeum Qubely plugin and WordPress sites using this plugin version 1.8.14 or earlier.
What specific vulnerability is presented in CVE-2025-58663?
CVE-2025-58663 presents a missing authorization vulnerability that allows exploitation of incorrectly configured access control security levels.
Can CVE-2025-58663 be exploited for data breaches?
Yes, CVE-2025-58663 can potentially be exploited by attackers to gain unauthorized access to sensitive information.