Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total519
Critical73
High150
Medium296
Reset
Showing 221-240 of 519 records
Threat Entry Updated 2025-04-29

CVE-2025-2238 - Vikinger Theme

The Vikinger theme for WordPress is vulnerable to privilege in all versions up to, and including, 1.9.30. This is due to insufficient user_meta restrictions in the 'vikinger_user_meta_update_ajax' function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to escalate their privileges to Administrator-level.

THEME Vikinger

CVE-2025-2238

HIGH CVSS 8.8 2025-04-25
Threat Entry Updated 2025-04-29

CVE-2024-13307 - Reales Wp Real Estate Wordpress Theme

The Reales WP - Real Estate WordPress Theme theme for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'reales_delete_file', 'reales_delete_file_plans', 'reales_add_to_favourites', and 'reales_remove_from_favourites' functions in all versions up to, and including, 2.1.2. This makes it possible for unauthenticated attackers to delete arbitrary attachments, and add or remove favorite property listings for any user.

THEME Reales Wp Real Estate Wordpress Theme

CVE-2024-13307

MEDIUM CVSS 5.3 2025-04-24
Threat Entry Updated 2025-06-23

CVE-2025-2558 - Through 0 Theme

The-wound WordPress theme through 0.0.1 does not validate some parameters before using them to generate paths passed to include function/s, allowing unauthenticated users to perform LFI attacks and download arbitrary file from the server

THEME Through 0

CVE-2025-2558

HIGH CVSS 8.6 2025-04-24
Threat Entry Updated 2025-04-30

CVE-2025-3457 - Oceanwp Theme

The Ocean Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'oceanwp_icon' shortcode in all versions up to, and including, 2.4.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

THEME Oceanwp

CVE-2025-3457

MEDIUM CVSS 6.4 2025-04-22
Threat Entry Updated 2025-04-21

CVE-2025-1093 - Aihub Theme

The AIHub theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the generate_image function in all versions up to, and including, 1.3.7. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

THEME Aihub

CVE-2025-1093

CRITICAL CVSS 9.8 2025-04-19
Threat Entry Updated 2025-06-04

CVE-2025-3077 - Betheme

The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Button shortcode and Custom CSS field in all versions up to, and including, 28.0.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

THEME Betheme

CVE-2025-3077

MEDIUM CVSS 6.4 2025-04-16
Threat Entry Updated 2025-04-08

CVE-2025-2526 - Streamit Theme

The Streamit theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.0.2. This is due to the plugin not properly validating a user's identity prior to updating their details like email in the 'st_Authentication_Controller::edit_profile' function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account.

THEME Streamit

CVE-2025-2526

HIGH CVSS 8.8 2025-04-08
Threat Entry Updated 2025-04-08

CVE-2025-2525 - Streamit Theme

The Streamit theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'st_Authentication_Controller::edit_profile' function in all versions up to, and including, 4.0.1. This makes it possible for authenticated attackers, with subscriber-level and above permissions, to upload arbitrary files on the affected site's server which may make remote code execution possible.

THEME Streamit

CVE-2025-2525

HIGH CVSS 8.8 2025-04-08
Threat Entry Updated 2025-04-08

CVE-2025-2519 - Sreamit Theme

The Sreamit theme for WordPress is vulnerable to arbitrary file downloads in all versions up to, and including, 4.0.1. This is due to insufficient file validation in the 'st_send_download_file' function. This makes it possible for authenticated attackers, with subscriber-level access and above, to download arbitrary files.

THEME Sreamit

CVE-2025-2519

MEDIUM CVSS 6.5 2025-04-08
Threat Entry Updated 2025-08-08

CVE-2025-2798 - Woffice Crm Theme

The Woffice CRM theme for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.4.21. This is due to a misconfiguration of excluded roles during registration. This makes it possible for unauthenticated attackers to register with an Administrator role if a custom login form is being used. This can be combined with CVE-2025-2797 to bypass the user approval process if an Administrator can be tricked into taking an action such as clicking a link.

THEME Woffice Crm

CVE-2025-2798

CRITICAL CVSS 9.8 2025-04-04
Threat Entry Updated 2025-04-07

CVE-2025-3105 - Listing Theme

The Vehica Core plugin for WordPress, used by the Vehica - Car Dealer & Listing WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 1.0.97. This is due to the plugin not properly validating user meta fields prior to updating them in the database. This makes it possible for authenticated attackers, with Subscriber-level access and above, to change escalate their privileges to Administrator.

THEME Listing

CVE-2025-3105

HIGH CVSS 8.8 2025-04-04
Threat Entry Updated 2025-04-01

CVE-2025-2891 - Real Estate 7 Wordpress Theme

The Real Estate 7 WordPress theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via the 'template-submit-listing.php' file in all versions up to, and including, 3.5.4. This makes it possible for authenticated attackers, with Seller-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible if front-end listing submission has been enabled.

THEME Real Estate 7 Wordpress

CVE-2025-2891

HIGH CVSS 8.8 2025-04-01
Threat Entry Updated 2025-03-28

CVE-2025-2294 - Kubio AI Page Builder Theme

The Kubio AI Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.5.1 via thekubio_hybrid_theme_load_template function. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

THEME Kubio AI Page Builder

CVE-2025-2294

CRITICAL CVSS 9.8 2025-03-28
Threat Entry Updated 2025-03-27

CVE-2025-2576 - Ayyash Studio — The kick-start kit Theme

The Ayyash Studio — The kick-start kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.

THEME Ayyash Studio — The kick-start kit

CVE-2025-2576

MEDIUM CVSS 6.4 2025-03-26
Threat Entry Updated 2025-03-27

CVE-2025-0845 - DesignThemes Core Features

The DesignThemes Core Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 4.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

THEME DesignThemes Core Features

CVE-2025-0845

MEDIUM CVSS 6.4 2025-03-25
Threat Entry Updated 2025-03-19

CVE-2024-13933 - Delivery Restaurant Directory Wordpress Theme

The FoodBakery | Delivery Restaurant Directory WordPress Theme theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.7. This is due to missing or incorrect nonce validation on the foodbakery_var_backup_file_delete, foodbakery_widget_file_delete, theme_option_save, export_widget_settings, ajax_import_widget_data, foodbakery_var_settings_backup_generate, foodbakery_var_backup_file_restore, and theme_option_rest_all functions. This makes it possible for unauthenticated attackers to delete arbitrary files, update theme options, export widget options, import widget options, generate backups, restore backups, and reset theme options via a forged request granted they can trick a site administrator into performing an action such…

THEME Delivery Restaurant Directory Wordpress Theme

CVE-2024-13933

HIGH CVSS 8.8 2025-03-19
Threat Entry Updated 2025-03-19

CVE-2024-12920 - Delivery Restaurant Directory Wordpress Theme

The FoodBakery | Delivery Restaurant Directory WordPress Theme theme for WordPress is vulnerable to unauthorized access of data and modification of data due to a missing capability check on the foodbakery_var_backup_file_delete, foodbakery_widget_file_delete, theme_option_save, export_widget_settings, ajax_import_widget_data, foodbakery_var_settings_backup_generate, foodbakery_var_backup_file_restore, and theme_option_rest_all functions in all versions up to, and including, 4.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary files, update theme options, export widget options, import widget options, generate backups, restore backups, and reset theme options.

THEME Delivery Restaurant Directory Wordpress Theme

CVE-2024-12920

HIGH CVSS 8.8 2025-03-19
Threat Entry Updated 2025-03-19

CVE-2024-13790 - High Converting Ecommerce Wordpress Theme

The MinimogWP – The High Converting eCommerce WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.7.0 via the 'template' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

THEME High Converting Ecommerce Wordpress Theme

CVE-2024-13790

CRITICAL CVSS 9.8 2025-03-19
Threat Entry Updated 2025-03-19

CVE-2024-13412 - Cozystay Theme

The CozyStay theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ajax_handler function in all versions up to, and including, 1.7.0. This makes it possible for unauthenticated attackers to execute arbitrary actions.

THEME Cozystay

CVE-2024-13412

HIGH CVSS 7.5 2025-03-19
Threat Entry Updated 2025-03-19

CVE-2024-12922 - Altair Theme

The Altair theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check within functions.php in all versions up to, and including, 5.2.4. This makes it possible for unauthenticated attackers to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.

THEME Altair

CVE-2024-12922

CRITICAL CVSS 9.8 2025-03-19
Scroll to top