Vulnerabilidades en ThemeRex

188 resultados
Análisis Vexday

ThemeRex apresenta presença mínima de vulnerabilidades com apenas 1 CVE catalogado, classificado como crítico (CVSS). Não há exploração ativa registrada (KEV), mas a vulnerabilidade foi divulgada recentemente (últimos 90 dias) e envolve desserialização insegura (CWE-502), um padrão que historicamente favorece exploração remota. O risco é contido em volume, porém requer atenção pela natureza da fraqueza e recência da exposição.

CVE-2026-28049HIGHWordPress Police Department theme <= 2.17 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-27986HIGHWordPress OsTende theme <= 1.4.3 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-28023HIGHWordPress Nuts theme <= 1.10 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-28056HIGHWordPress MCKinney's Politics theme <= 1.2.8 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-28098HIGHWordPress Save Life theme <= 1.2.13 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-28063HIGHWordPress Asia Garden theme <= 1.3.1 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2026-28066HIGHWordPress Legrand theme <= 2.17 - Local File Inclusion vulnerabilityEPSS 0.4%CVE-2025-69405CRITICALWordPress Lorem Ipsum | Books & Media Store theme <= 1.2.11 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-22474CRITICALWordPress Equestrian Centre theme <= 1.5 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2025-69404CRITICALWordPress Extreme Store theme <= 1.5.10 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2025-69111CRITICALWordPress Reisen theme <= 1.4.1 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2025-69127CRITICALWordPress Plumbing theme <= 1.6 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-27438CRITICALWordPress Kingler theme <= 1.7 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-27439CRITICALWordPress Dentario theme <= 1.5 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-28074CRITICALWordPress Pizza House theme <= 1.4.0 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-27082CRITICALWordPress Love Story theme <= 1.3.12 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-27083CRITICALWordPress Work & Travel Company theme <= 1.2 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-28105CRITICALWordPress Good Energy theme <= 1.7.7 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-27437CRITICALWordPress Tennis Club theme <= 1.2.3 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2026-22331HIGHWordPress AutoParts theme <= 1.5.8 - Local File Inclusion vulnerabilityEPSS 0.4%