Metrics
Affected Vendors & Products
Solution
Update the WordPress Ultimate Store Kit Elementor Addons plugin to the latest available version (at least 2.4.1).
Workaround
No workaround given by the vendor.
Thu, 17 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 17 Apr 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Deserialization of Untrusted Data vulnerability in bdthemes Ultimate Store Kit Elementor Addons allows Object Injection. This issue affects Ultimate Store Kit Elementor Addons: from n/a through 2.4.0. | |
Title | WordPress Ultimate Store Kit Elementor Addons <= 2.4.0 - Deserialization of untrusted data Vulnerability | |
Weaknesses | CWE-502 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-04-17T18:43:17.618Z
Reserved: 2025-04-16T06:26:52.001Z
Link: CVE-2025-39588

Updated: 2025-04-17T17:42:58.101Z

Status : Awaiting Analysis
Published: 2025-04-17T16:15:58.953
Modified: 2025-04-17T20:21:05.203
Link: CVE-2025-39588

No data.

No data.