VYPR

design-scuole-wordpress-theme

by WordPress

CVEs (3)

  • CVE-2026-87792HigSep 15, 2026
    risk 0.57cvss epss

    The "Design Scuole Italia" WordPress theme is affected by multiple Authorization Bypass vulnerabilities in the dsi_pdf_generator and dsi_csv_generator functions, allowing an unauthenticated attacker to access restricted "Circolare" content and registered users' data. An…

  • CVE-2026-87791HigSep 15, 2026
    risk 0.57cvss epss

    A path traversal vulnerability exists in the reserved_file_check function of the functions.php file in the WordPress Design Scuole Italia theme. The vulnerability allows an unauthenticated attacker to download arbitrary files accessible by the web server process.

  • CVE-2026-87793MedSep 15, 2026
    risk 0.33cvss epss

    The "Design Scuole Italia" WordPress theme is affected by a Reflected XSS vulnerability in the filters-scheda-didattica.php file, allowing an unauthenticated attacker to execute arbitrary JavaScript in a victim's browser via a crafted URL containing a…