Vulnerabilidades em purethemes

16 resultados
CVE-2021-24237Realteo < 1.2.4 - Unauthenticated Reflected Cross-Site Scripting (XSS)EPSS 6.3%CVE-2021-24238Realteo < 1.2.4 - Arbitrary Property Deletion via IDOREPSS 1.1%CVE-2021-24318Listeo < 1.6.11 - Multiple Authenticated IDOR VulnerabilitiesEPSS 1.0%CVE-2021-24317Listeo < 1.6.11 - Multiple XSS & XFS vulnerabilitiesEPSS 0.9%CVE-2021-24246WorkScout Core < 1.3.4 - Authenticated Stored XSS & XFSEPSS 0.7%CVE-2025-2232CRITICALRealteo - Real Estate Plugin by Purethemes <= 1.2.8 - Authentication Bypass via 'do_register_user'EPSS 0.5%CVE-2026-52716MEDIUMWordPress WorkScout-Core plugin <= 1.7.11 - Arbitrary File Deletion vulnerabilityEPSS 0.4%CVE-2025-14938MEDIUMListeo-Core - Directory Plugin by Purethemes <= 2.0.27 - Unauthenticated Arbitrary Media UploadEPSS 0.3%CVE-2025-49404HIGHWordPress Listeo-Core Plugin < 2.0.7 - SQL Injection VulnerabilityEPSS 0.3%CVE-2025-67959HIGHWordPress WorkScout theme <= 4.1.07 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-67960HIGHWordPress WorkScout-Core plugin <= 1.7.06 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-59571HIGHWordPress WorkScout-Core plugin < 1.7.06 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-25461HIGHWordPress Listeo Core plugin <= 2.0.21 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-8413MEDIUMListeo <= 2.0.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via soundcloud ShortcodeEPSS 0.2%CVE-2025-59572HIGHWordPress WorkScout-Core Plugin < 1.7.06 - Cross Site Request Forgery (CSRF) VulnerabilityEPSS 0.2%CVE-2025-67932HIGHWordPress Listeo Core plugin < 2.0.19 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%