Missing Authorization vulnerability in ThemeFusion Avada Core fusion-core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Avada Core: from n/a through < 5.15.0.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Theme-fusion
Theme-fusion avada Wordpress Wordpress wordpress |
|
| Vendors & Products |
Theme-fusion
Theme-fusion avada Wordpress Wordpress wordpress |
Fri, 13 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 13 Mar 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in ThemeFusion Avada Core fusion-core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Avada Core: from n/a through < 5.15.0. | |
| Title | WordPress Avada Core plugin < 5.15.0 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2026-03-13T11:42:21.829Z
Updated: 2026-03-13T18:53:33.921Z
Reserved: 2026-03-12T11:11:40.509Z
Link: CVE-2026-32453
Updated: 2026-03-13T18:46:47.821Z
Status : Awaiting Analysis
Published: 2026-03-13T19:55:06.883
Modified: 2026-03-16T14:53:46.157
Link: CVE-2026-32453
No data.
ReportizFlow