Vulnerabilidades en Edge-Themes

21 resultados
Análisis Vexday

Edge-Themes acumula 21 vulnerabilidades com 3 classificadas como críticas, mas nenhuma está sob exploração ativa registrada. A fraqueza dominante é desserialização insegura (CWE-502), padrão típico de componentes web. O ritmo de divulgações permanece moderado (8 nos últimos 90 dias), sugerindo risco residual controlado, embora a presença de falhas críticas exija atenção em ambientes de produção.

CVE-2025-1638CRITICALAlloggio Membership <= 1.1 - Authentication Bypass via Social Login Account TakeoverEPSS 0.6%CVE-2025-3278CRITICALUrbanGo Membership <= 1.0.4 - Unauthenticated Privilege EscalationEPSS 0.5%CVE-2025-49889HIGHWordPress Edge CPT plugin <= 1.4 - Local File Inclusion vulnerabilityEPSS 0.5%CVE-2025-69410HIGHWordPress Belletrist theme <= 1.2 - Local File Inclusion vulnerabilityEPSS 0.5%CVE-2025-69057HIGHWordPress Eldon theme <= 1.0 - Local File Inclusion vulnerabilityEPSS 0.5%CVE-2025-62868HIGHWordPress Edge CPT plugin <= 1.4 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2025-64287HIGHWordPress Alloggio - Hotel Booking Theme theme <= 1.8 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2025-69050HIGHWordPress Overworld theme <= 1.3 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2025-68987HIGHWordPress Cinerama theme <= 2.9 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-40735HIGHWordPress Reina theme <= 2.1 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-32512CRITICALWordPress Pelicula theme < 1.10 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-57788HIGHWordPress Aalto theme <= 1.8 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-57800HIGHWordPress Overworld theme <= 1.5 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-39539HIGHWordPress Alloggio - Hotel Booking theme <= 2.1.2 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-40738HIGHWordPress Eldon theme <= 1.4.1 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-40760HIGHWordPress Behold theme <= 1.5 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-40761HIGHWordPress Valeska theme <= 1.2.2 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-40736HIGHWordPress Laurits theme <= 1.5.1 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-32509MEDIUMWordPress Gracey theme < 1.4 - Arbitrary Object Instantiation vulnerabilityEPSS 0.2%CVE-2026-32510MEDIUMWordPress Kamperen theme < 1.3 - Arbitrary Object Instantiation vulnerabilityEPSS 0.2%