CatchThemes kayıtları
catchthemes üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2025-32154İstismar yok | WordPress Catch Dark Mode plugin <= 2.0.1 - Local File Inclusion vulnerabilitycatchthemes · catch dark mode · CWE-98 | Yüksek8,8 | — | %1,0 | 4 Nis 2025 |
26İzleyin | CVE-2025-67543İstismar yok | WordPress Essential Widgets plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerabilitycatchthemes · essential widgets · CWE-79 | Orta6,5 | — | %0,2 | 9 Ara 2025 |
24İzleyin | CVE-2023-25961İstismar yok | WordPress Darcie Theme <= 1.1.5 is vulnerable to Cross Site Scripting (XSS)catchthemes · darcie · CWE-79 | Orta6,1 | — | %0,4 | 4 May 2023 |
23İzleyin | CVE-2024-47356İstismar yok | WordPress Create theme <= 2.9.1 - Cross Site Scripting (XSS) vulnerabilitycatchthemes · create · CWE-79 | Orta5,9 | — | %0,2 | 6 Eki 2024 |
20İzleyin | CVE-2024-44010İstismar yok | WordPress Full frame theme <= 2.7.2 - Cross Site Scripting (XSS) vulnerabilitycatchthemes · full frame · CWE-79 | Orta5,1 | — | %0,2 | 6 Eki 2024 |
19İzleyin | CVE-2024-47313İstismar yok | WordPress Catch Base theme <= 3.4.6 - Cross Site Scripting (XSS) vulnerabilitycatchthemes · catch base · CWE-79 | Orta4,8 | — | %0,2 | 6 Eki 2024 |
- CVE-2025-3215435İzleyin
WordPress Catch Dark Mode plugin <= 2.0.1 - Local File Inclusion vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1catchthemes · catch dark mode4 Nis 2025
- CVE-2025-6754326İzleyin
WordPress Essential Widgets plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability
OrtaCVSS 6,5İstismar yokEPSS %0catchthemes · essential widgets9 Ara 2025
- CVE-2023-2596124İzleyin
WordPress Darcie Theme <= 1.1.5 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 6,1İstismar yokEPSS %0catchthemes · darcie4 May 2023
- CVE-2024-4735623İzleyin
WordPress Create theme <= 2.9.1 - Cross Site Scripting (XSS) vulnerability
OrtaCVSS 5,9İstismar yokEPSS %0catchthemes · create6 Eki 2024
- CVE-2024-4401020İzleyin
WordPress Full frame theme <= 2.7.2 - Cross Site Scripting (XSS) vulnerability
OrtaCVSS 5,1İstismar yokEPSS %0catchthemes · full frame6 Eki 2024
- CVE-2024-4731319İzleyin
WordPress Catch Base theme <= 3.4.6 - Cross Site Scripting (XSS) vulnerability
OrtaCVSS 4,8İstismar yokEPSS %0catchthemes · catch base6 Eki 2024