Skip to content
Noroxi

CatchThemes records

6 published records for vendor catchthemes.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 23
  2. 24
  3. 25

Bar: total · dark part: CISA KEV.

Attack profile

All records

6 records
  • WordPress Catch Dark Mode plugin <= 2.0.1 - Local File Inclusion vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    catchthemes · catch dark modeApr 4, 2025

  • WordPress Essential Widgets plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    catchthemes · essential widgetsDec 9, 2025

  • WordPress Darcie Theme <= 1.1.5 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 6.1No exploitEPSS 0%

    catchthemes · darcieMay 4, 2023

  • WordPress Create theme <= 2.9.1 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.9No exploitEPSS 0%

    catchthemes · createOct 6, 2024

  • WordPress Full frame theme <= 2.7.2 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.1No exploitEPSS 0%

    catchthemes · full frameOct 6, 2024

  • WordPress Catch Base theme <= 3.4.6 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 4.8No exploitEPSS 0%

    catchthemes · catch baseOct 6, 2024