PT-2026-25229 · Rara Theme · Digital Download

·

CVE-2026-32382

·

Published

2026-03-13

·

Updated

2026-03-14

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions raratheme Digital Download versions n/a through 1.1.4
Description A missing authorization issue exists in raratheme Digital Download’s digital-download functionality. This allows exploitation of incorrectly configured access control security levels. The issue concerns the control of access to resources within the application.
Recommendations Versions prior to 1.1.4 should be updated.

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-32382

Affected Products

Digital Download