plugin

Amz Configurator Core Vulnerabilities

1 known security issue reported for the Amz Configurator Core WordPress plugin. Most recent disclosed Apr 23, 2025.

1 high

Running Amz Configurator Core on your site? Check whether your installed version is affected.

Scan your site free

Configurator Theme Core <= 1.4.7 - Authenticated (Subscriber+) Privilege Escalation

high

The Configurator Theme Core plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.4.7. This is due to the plugin not properly validating user meta fields prior to updating them in the database. This makes it possible for authenticated attackers, with Subscriber-level access...

CVSS:
8.8
Affected:
up to 1.4.7
Fix:
No patched version reported
Disclosed:
Apr 23, 2025

CVE-2025-3101 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database