themehorse records
6 published records for vendor themehorse.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2024-49701No exploit | WordPress Mags theme <= 1.1.6 - Local File Inclusion vulnerabilitythemehorse · mags · CWE-98 | High8.8 | — | 0.5% | Oct 23, 2024 |
35Monitor | CVE-2024-50435No exploit | WordPress Meta News theme <= 1.1.7 - Local File Inclusion vulnerabilitythemehorse · meta news · CWE-98 | High8.8 | — | 0.5% | Oct 28, 2024 |
35Monitor | CVE-2024-50436No exploit | WordPress Clean Retina theme <= 3.0.6 - Local File Inclusion vulnerabilitythemehorse · clean retina · CWE-98 | High8.8 | — | 0.5% | Oct 28, 2024 |
35Monitor | CVE-2024-50434No exploit | WordPress NewsCard theme <= 1.3 - Local File Inclusion vulnerabilitythemehorse · newscard · CWE-98 | High8.8 | — | 0.5% | Oct 28, 2024 |
26Monitor | CVE-2024-33537No exploit | WordPress WP Portfolio theme <= 2.4 - Cross Site Scripting (XSS) vulnerabilitythemehorse · wp portfolio · CWE-79 | Medium6.5 | — | 0.4% | Apr 29, 2024 |
21Monitor | CVE-2024-35758No exploit | WordPress Interface theme <= 3.1.0 - Cross Site Scripting (XSS) vulnerabilitythemehorse · interface · CWE-79 | Medium5.4 | — | 0.3% | Jun 21, 2024 |
- CVE-2024-4970135Monitor
WordPress Mags theme <= 1.1.6 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%themehorse · magsOct 23, 2024
- CVE-2024-5043535Monitor
WordPress Meta News theme <= 1.1.7 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%themehorse · meta newsOct 28, 2024
- CVE-2024-5043635Monitor
WordPress Clean Retina theme <= 3.0.6 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%themehorse · clean retinaOct 28, 2024
- CVE-2024-5043435Monitor
WordPress NewsCard theme <= 1.3 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%themehorse · newscardOct 28, 2024
- CVE-2024-3353726Monitor
WordPress WP Portfolio theme <= 2.4 - Cross Site Scripting (XSS) vulnerability
MediumCVSS 6.5No exploitEPSS 0%themehorse · wp portfolioApr 29, 2024
- CVE-2024-3575821Monitor
WordPress Interface theme <= 3.1.0 - Cross Site Scripting (XSS) vulnerability
MediumCVSS 5.4No exploitEPSS 0%themehorse · interfaceJun 21, 2024