Vulnerabilidades em Thrive Themes
7 resultadosAnálise Vexday
Thrive Themes apresenta um perfil de risco contido com 7 vulnerabilidades totais, sendo 1 crítica e nenhuma sob ataque ativo registrado. A fraqueza predominante é CWE-352 (Cross-Site Request Forgery), padrão em plataformas web, com apenas 1 nova vulnerabilidade publicada nos últimos 90 dias, indicando cadência moderada de descobertas.
CVE-2021-24220—All Thrive Themes Legacy Themes < 2.0.0 - Unauthenticated Arbitrary File Upload and Option DeletionEPSS 3.9%CVE-2021-24219—All Thrive Themes and Plugins - Unauthenticated Option UpdateEPSS 2.1%CVE-2023-47782HIGHWordPress Thrive Theme Builder theme < 3.24.0 - Authenticated Privilege Escalation vulnerabilityEPSS 0.5%CVE-2026-49107CRITICALWordPress Thrive Apprentice plugin < 10.8.10.2 - PHP Object Injection vulnerabilityEPSS 0.4%CVE-2023-47783HIGHWordPress Thrive Theme Builder theme < 3.24.0 - Multiple Authenticated Broken Access Control vulnerabilityEPSS 0.4%CVE-2023-47781HIGHWordPress Thrive Theme Builder Theme < 3.24.2 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.3%CVE-2023-51531MEDIUMWordPress Thrive Automator Plugin <= 1.17 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%