Missing Authorization vulnerability in Jegstudio Startupzy startupzy allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Startupzy: from n/a through 1.1.1.
CVSS Details
- CVSS 3.1 Base Score: 4.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Accountra Theme | — | Update accountra theme to version 1.0.4, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
| Intrace Theme | — | Update intrace theme to version 1.1.1, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
| Photology Theme | — | Update photology theme to version 1.1.4, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
| Startupzy Theme | — | Update startupzy theme to version 1.1.2, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
| Travey Theme | — | Update travey theme to version 1.0.5, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
| Zeever Theme | — | Update zeever theme to version 1.1.1, or a newer patched version | Dec 8, 2025 | Apr 26, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub