Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2025-3077 The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Button shortcode and Custom CSS field in all versions u… Betheme 28.0.4+ Fix from $1,6002025-04-16 MEDIUM 5.4 CVE-2025-0450 The Betheme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's custom JS functionality in all versions up to, and inc… Betheme 27.6.2+ Fix from $1,6002025-01-21 MEDIUM 5.4 CVE-2024-5567 The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 27.5.5 due to… Betheme 27.5.5+ Fix from $1,6002024-09-13 HIGH 8.8 CVE-2024-2694 The Betheme theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 27.5.6 via deserialization of untrusted i… Betheme after 27.5.6 Fix from $1,9502024-08-30 MEDIUM 5.4 CVE-2024-3998 The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes in all versions up to, and includ… Betheme after 27.5.6 Fix from $1,6002024-08-30 HIGH 7.2 CVE-2023-39998 Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 27.1.1. Betheme 27.1.2+ Fix from $1,9502024-06-19 HIGH 7.6 CVE-2023-47770 Missing Authorization vulnerability in Muffin Group Betheme.This issue affects Betheme: from n/a through 27.1.1. Betheme 27.1.2+ Fix from $1,9502024-06-19 HIGH 8.8 CVE-2022-45356 Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1. Betheme 26.6.3+ Fix from $1,9502024-03-25 MEDIUM 5.4 CVE-2022-45351 Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1. Betheme after 26.6.1 Fix from $1,6002024-03-25 MEDIUM 6.1 CVE-2023-29101 Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Muffingroup Betheme theme <= 26.7.5 versions. Betheme after 26.7.5 Fix from $1,6002023-05-10 HIGH 8.1 CVE-2022-45353 Broken Access Control in Betheme theme <= 26.6.1 on WordPress. Betheme after 26.6.1 Fix from $1,9502023-01-14 MEDIUM 6.5 CVE-2022-3747 The Becustom plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.5.2. This is due to missing nonce… Becustom after 1.0.5.2 Fix from $1,6002022-11-29 MEDIUM 5.4 CVE-2022-45363 Auth. (subscriber+) Stored Cross-Site Scripting (XSS) in Muffingroup Betheme theme <= 26.6.1 on WordPress. Betheme after 26.6.1 Fix from $1,6002022-11-22 HIGH 8.8 CVE-2022-3861 The Betheme theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 26.5.1.4 via deserialization of untrusted inp… Betheme 26.6+ Fix from $1,9502022-11-21 HIGH 8.8 CVE-2022-45077 Auth. (subscriber+) PHP Object Injection vulnerability in Betheme theme <= 26.5.1.4 on WordPress. Betheme 26.6+ Fix from $1,9502022-11-17