Vulnerabilidades en themerex

188 resultados
Análisis Vexday

Themerex apresenta footprint reduzido com apenas 1 CVE registrado na base, sem evidências de exploração ativa no momento. A vulnerabilidade é classificada como crítica, mas sua idade superior a 90 dias sugere que o risco imediato é baixo, embora demande atenção se ainda não mitigado.

CVE-2024-6297CRITICALSeveral WordPress.org Plugins <= Various Versions - Injected BackdoorEPSS 1.0%CVE-2024-13448CRITICALThemeREX Addons <= 2.32.3 - Unauthenticated Arbitrary File Upload in trx_addons_uploads_save_dataEPSS 0.9%CVE-2024-13770HIGHPuzzles | WP Magazine / Review with Store WordPress Theme + RTL <= 4.2.4 - Unauthenticated PHP Object InjectionEPSS 0.8%CVE-2025-0682HIGHThemeREX Addons <= 2.33.0 - Authenticated (Contributor+) Local File Inclusion via ShortcodeEPSS 0.6%CVE-2026-28043CRITICALWordPress Healer - Doctor, Clinic & Medical WordPress Theme theme <= 1.0.0 - Local File Inclusion vulnerabilityEPSS 0.6%CVE-2026-28014HIGHWordPress Translogic theme <= 1.2.11 - Local File Inclusion vulnerabilityEPSS 0.6%CVE-2025-69402HIGHWordPress R&F theme <= 1.5 - Local File Inclusion vulnerabilityEPSS 0.6%CVE-2025-69395HIGHWordPress Gable theme <= 1.5 - Local File Inclusion vulnerabilityEPSS 0.6%CVE-2026-27438CRITICALWordPress Kingler theme <= 1.7 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-27082CRITICALWordPress Love Story theme <= 1.3.12 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-27084CRITICALWordPress Buisson theme <= 1.1.11 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-28105CRITICALWordPress Good Energy theme <= 1.7.7 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-65573CRITICALWordPress Abelle theme <= 1.22 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-28074CRITICALWordPress Pizza House theme <= 1.4.0 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-27437CRITICALWordPress Tennis Club theme <= 1.2.3 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-27083CRITICALWordPress Work & Travel Company theme <= 1.2 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-27439CRITICALWordPress Dentario theme <= 1.5 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2026-62105CRITICALWordPress ThemeREX Addons plugin < 2.45.0 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2024-13786CRITICALEducation Center | LMS & Online Courses WordPress Theme <= 3.6.10 - PHP Object InjectionEPSS 0.6%CVE-2026-28088HIGHWordPress Aqualots theme <= 1.1.6 - Local File Inclusion vulnerabilityEPSS 0.6%