Vulnerabilidades en AxiomThemes

98 resultados
Análisis Vexday

AxiomThemes apresenta dois CVEs catalogados, ambos publicados nos últimos 90 dias, indicando risco recente. Nenhuma vulnerabilidade está sob exploração ativa confirmada (KEV), e não há críticas em CVSS, reduzindo a severidade imediata. A fraqueza dominante é CWE-98 (Remote Code Execution), que merece monitoramento contínuo apesar da ausência atual de ataques documentados.

CVE-2026-22475CRITICALWordPress Estate theme <= 1.3.4 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-57738CRITICALWordPress 777 theme <= 1.13.0 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-22325HIGHWordPress Promo theme <= 1.3.0 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-22326HIGHWordPress Reprizo theme <= 1.0.8 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2026-28118HIGHWordPress Welldone theme <= 2.4 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2025-58897HIGHWordPress Fermentio theme <= 1.5.0 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2025-58707HIGHWordPress Spin theme <= 1.8 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2026-28129HIGHWordPress Little Birdies theme <= 1.3.16 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2026-28119HIGHWordPress Nirvana theme <= 2.6 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2025-69369HIGHWordPress Racquet theme <= 1.12.0 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2026-28117HIGHWordPress smart SEO theme <= 2.9 - Local File Inclusion vulnerabilityEPSS 0.3%CVE-2025-28953HIGHWordPress smart SEO plugin <= 4.0 - SQL Injection VulnerabilityEPSS 0.3%CVE-2026-27098HIGHWordPress Au Pair Agency - Babysitting & Nanny Theme theme <= 1.2.2 - Deserialization of untrusted data vulnerabilityEPSS 0.3%CVE-2026-27377MEDIUMWordPress QuickCal - Appointment Booking Calendar for WordPress plugin <= 1.0.16 - Broken Access Control vulnerabilityEPSS 0.3%CVE-2026-65581CRITICALWordPress AI ANN theme <= 1.29.0 - PHP Object Injection vulnerabilityEPSS CVE-2026-65571CRITICALWordPress 69 Clothing theme <= 1.2.11.1 - PHP Object Injection vulnerabilityEPSS CVE-2026-65579CRITICALWordPress Agricola theme <= 1.21.0 - PHP Object Injection vulnerabilityEPSS CVE-2026-65572CRITICALWordPress A.Williams theme <= 1.3.1 - PHP Object Injection vulnerabilityEPSS