İçeriğe atla
Noroxi

themehunk kayıtları

themehunk üreticisine ait 23 yayımlanmış kayıt.

Tüm kayıtlar

23 kayıt
  • CVE-2024-11972
    55Planlayın

    Hunk Companion < 1.9.0 - Unauthenticated Plugin Installation

    KritikCVSS 9,8Kavram kanıtıEPSS %54

    themehunk · hunk companion31 Ara 2024

  • CVE-2024-9061
    55Planlayın

    WP Popup Builder – Popup Forms and Marketing Lead Generation <= 1.3.5 - Unauthenticated Arbitrary Shortcode Execution via wp_ajax_nopriv_shortcode_Api_Add

    KritikCVSS 9,8Kavram kanıtıEPSS %52

    themehunk · wp popup builder16 Eki 2024

  • CVE-2024-9707
    42Planlayın

    Hunk Companion <= 1.8.4 - Missing Authorization to Unauthenticated Arbitrary Plugin Installation/Activation

    KritikCVSS 9,8Kavram kanıtıEPSS %9

    themehunk · hunk companion11 Eki 2024

  • CVE-2022-38057
    39İzleyin

    WordPress TH Advance Product Search plugin <= 1.2.1 - Unauthenticated Plugin Settings Reset vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    themehunk · th advance product search25 Mar 2024

  • CVE-2025-52816
    39İzleyin

    WordPress Zita theme <= 1.6.5 - Local File Inclusion Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    themehunk · zita27 Haz 2025

  • CVE-2022-40218
    39İzleyin

    WordPress TH Advance Product Search plugin <= 1.1.4 - Unauthenticated Plugin Settings Change vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    themehunk · advance product search8 May 2024

  • CVE-2024-10674
    36İzleyin

    Th Shop Mania <= 1.4.9 - Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    themehunk · th shop mania9 Kas 2024

  • CVE-2024-10673
    35İzleyin

    Top Store <= 1.5.4 - Authenticated (Subscriber+) Arbitrary Plugin Installation/Activation

    YüksekCVSS 8,8Kavram kanıtıEPSS %1

    themehunk · top store9 Kas 2024

  • CVE-2023-27431
    35İzleyin

    WordPress Big Store Theme <= 1.9.3 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    themehunk · big store12 Kas 2023

  • CVE-2025-22644
    26İzleyin

    WordPress Vayu Blocks – Gutenberg Blocks plugin <= 1.4.7 - Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 6,5İstismar yokEPSS %0

    themehunk · vayu blocks27 Mar 2025

  • CVE-2021-24967
    24İzleyin

    Contact Form & Lead Form Elementor Builder < 1.6.4 - Unauthenticated Stored Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    themehunk · contact form \& lead form elementor builder27 Ara 2021

  • CVE-2022-2404
    24İzleyin

    WP Popup Builder < 1.2.9 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    themehunk · wp popup builder26 Eyl 2022

  • CVE-2024-3637
    24İzleyin

    Responsive Contact Form Builder & Lead Generation Plugin <= 1.8.9 - Admin+ Stored XSS

    OrtaCVSS 6,1İstismar yokEPSS %0

    themehunk · contact form \& lead form elementor builder3 May 2024

  • CVE-2025-30881
    21İzleyin

    WordPress Big Store theme <= 2.0.8 - Broken Access Control vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    themehunk · big store27 Mar 2025

  • CVE-2025-62902
    21İzleyin

    WordPress WP Popup Builder plugin <= 1.3.8 - Sensitive Data Exposure vulnerability

    OrtaCVSS 5,3İstismar yokEPSS %0

    themehunk · wp popup builder26 Eki 2025

  • CVE-2024-44049
    21İzleyin

    WordPress Gutenberg Blocks – Unlimited blocks For Gutenberg plugin <= 1.2.8 - Authenticated Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    themehunk · gutenberg blocks17 Eyl 2024

  • CVE-2025-30990
    21İzleyin

    WordPress ThemeHunk plugin <= 1.2.0 - Broken Access Control vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    themehunk · mega menu6 Haz 2025

  • CVE-2023-28688
    21İzleyin

    WordPress TH Variation Swatches plugin <= 1.2.7 - Cross-Site Request Forgery (CSRF) vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    themehunk · variation swatches9 Ara 2024

  • CVE-2022-23179
    19İzleyin

    Contact Form & Lead Form Elementor Builder < 1.7.0 - Multiple Admin+ Stored Cross-Site Scripting

    OrtaCVSS 4,8İstismar yokEPSS %1

    themehunk · contact form \& lead form elementor builder16 Oca 2024

  • CVE-2024-10475
    19İzleyin

    Lead Form Builder < 1.9.8 - Admin+ Stored XSS

    OrtaCVSS 4,8İstismar yokEPSS %0

    themehunk · contact form \& lead form elementor builder15 May 2025

  • CVE-2022-23180
    17İzleyin

    Contact Form & Lead Form Elementor Builder Plugin < 1.7.4 - Multiple Subscriber+ Settings Update

    OrtaCVSS 4,3İstismar yokEPSS %1

    themehunk · contact form \& lead form elementor builder16 Oca 2024

  • CVE-2024-8434
    17İzleyin

    Easy Mega Menu Plugin for WordPress – ThemeHunk <= 1.0.9 - Missing Authorization to Authenticated (Subscriber+) Settings Updates

    OrtaCVSS 4,3İstismar yokEPSS %0

    themehunk · mega menu24 Eyl 2024

  • CVE-2022-2405
    17İzleyin

    WP Popup Builder < 1.3.0 - Subscriber+ Arbitrary Popup Deletion

    OrtaCVSS 4,3İstismar yokEPSS %0

    themehunk · wp popup builder26 Eyl 2022