CVE-2024-5567
- EPSS 0.3%
- Veröffentlicht 13.09.2024 07:15:06
- Zuletzt bearbeitet 26.09.2024 18:27:51
The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 27.5.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attack...
CVE-2024-3998
- EPSS 0.26%
- Veröffentlicht 30.08.2024 05:15:12
- Zuletzt bearbeitet 03.09.2024 15:00:36
The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes in all versions up to, and including, 27.5.6 due to insufficient input sanitization and output escaping on user supplied attributes. T...
CVE-2024-2694
- EPSS 0.62%
- Veröffentlicht 30.08.2024 05:15:12
- Zuletzt bearbeitet 03.09.2024 15:10:54
The Betheme theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 27.5.6 via deserialization of untrusted input of the 'mfn-page-items' post meta value. This makes it possible for authenticated attackers, wit...
CVE-2023-39998
- EPSS 0.46%
- Veröffentlicht 19.06.2024 13:15:54
- Zuletzt bearbeitet 31.01.2025 14:22:08
Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 27.1.1.
CVE-2023-47770
- EPSS 0.29%
- Veröffentlicht 19.06.2024 12:15:11
- Zuletzt bearbeitet 09.06.2025 20:13:43
Missing Authorization vulnerability in Muffin Group Betheme.This issue affects Betheme: from n/a through 27.1.1.
CVE-2022-45356
- EPSS 0.54%
- Veröffentlicht 25.03.2024 12:15:09
- Zuletzt bearbeitet 28.04.2026 19:18:59
Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.
CVE-2022-45352
- EPSS 0.41%
- Veröffentlicht 25.03.2024 12:15:09
- Zuletzt bearbeitet 28.04.2026 19:18:58
Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.
CVE-2022-45351
- EPSS 0.47%
- Veröffentlicht 25.03.2024 12:15:08
- Zuletzt bearbeitet 28.04.2026 19:18:58
Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.
CVE-2022-45349
- EPSS 0.41%
- Veröffentlicht 25.03.2024 12:15:08
- Zuletzt bearbeitet 28.04.2026 19:18:58
Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.
CVE-2023-29101
- EPSS 0.38%
- Veröffentlicht 10.05.2023 09:15:14
- Zuletzt bearbeitet 21.11.2024 07:56:32
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Muffingroup Betheme theme <= 26.7.5 versions.