VYPR

ThemeIsle SDK

by WordPress

CVEs (1)

  • CVE-2024-1047MedFeb 2, 2024
    risk 0.27cvss 5.3epss 0.01

    Multiple plugins and/or themes for WordPress with the ThemeIsle SDK are vulnerable to unauthorized modification of data due to a missing capability check on the register_reference() function in various versions. This makes it possible for unauthenticated attackers to update…