Hashthemes

Hashthemes Demo Importer

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.17%
  • Veröffentlicht 23.07.2026 11:18:53
  • Zuletzt bearbeitet 23.07.2026 14:17:52

Author Cross Site Scripting (XSS) in HashThemes Demo Importer <= 1.4.2 versions.

Exploit
  • EPSS 1.02%
  • Veröffentlicht 01.11.2021 21:15:07
  • Zuletzt bearbeitet 21.11.2024 06:19:15

The Hashthemes Demo Importer Plugin <= 1.1.1 for WordPress contained several AJAX functions which relied on a nonce which was visible to all logged-in users for access control, allowing them to execute a function that truncated nearly all database ta...