CVE-2026-27043
- EPSS 0.05%
- Veröffentlicht 19.03.2026 14:49:20
- Zuletzt bearbeitet 07.04.2026 10:16:03
Unrestricted Upload of File with Dangerous Type vulnerability in ThemeGoods Photography allows Path Traversal.This issue affects Photography: from n/a before 7.7.6.
CVE-2026-27348
- EPSS 0.04%
- Veröffentlicht 05.03.2026 06:16:25
- Zuletzt bearbeitet 07.04.2026 10:16:04
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Photography allows DOM-Based XSS.This issue affects Photography: from n/a before 7.7.6.
CVE-2025-64217
- EPSS 0.05%
- Veröffentlicht 18.12.2025 07:22:12
- Zuletzt bearbeitet 22.01.2026 22:02:12
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Photography photography allows Reflected XSS.This issue affects Photography: from n/a through <= 7.7.2.
CVE-2025-47579
- EPSS 0.08%
- Veröffentlicht 09.09.2025 16:25:26
- Zuletzt bearbeitet 01.04.2026 17:24:05
Deserialization of Untrusted Data vulnerability in ThemeGoods Photography photography allows Object Injection.This issue affects Photography: from n/a through <= 7.7.2.
CVE-2025-47584
- EPSS 0.25%
- Veröffentlicht 06.06.2025 11:45:34
- Zuletzt bearbeitet 22.01.2026 21:59:52
Deserialization of Untrusted Data vulnerability in ThemeGoods Photography.This issue affects Photography: from n/a through 7.5.2.