Vulnerabilities in FameThemes
5 resultsCVE-2025-22643MEDIUMWordPress OnePress theme <= 2.3.11 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2024-38739MEDIUMWordPress OnePress theme <= 2.3.8 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-5092MEDIUMMultiple Plugins and Themes <= (Various Versions) - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via lightGallery JavaScript LibraryEPSS 0.2%CVE-2024-33679MEDIUMWordPress FameTheme Demo Importer plugin <= 1.1.5 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2024-37448MEDIUMWordPress OnePress theme <= 2.3.6 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%