VYPR

Wp Child Theme Generator

by WordPress

CVEs (4)

  • CVE-2019-15822CriAug 30, 2019
    risk 0.64cvss 9.8epss 0.03

    The wps-child-theme-generator plugin before 1.2 for WordPress has classes/helpers.php directory traversal.

  • CVE-2023-47873CriMar 26, 2024
    risk 0.59cvss 9.1epss 0.02

    Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: from n/a through 1.0.9.

  • CVE-2021-24982MedMar 14, 2022
    risk 0.42cvss 6.4epss 0.01

    The Child Theme Generator WordPress plugin through 2.2.7 does not sanitise escape the parade parameter before outputting it back, leading to a Reflected Cross-Site Scripting in the admin dashboard

  • CVE-2024-3610MedJun 21, 2024
    risk 0.34cvss 5.3epss 0.01

    The WP Child Theme Generator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wctg_easy_child_theme() function in all versions up to, and including, 1.1.1. This makes it possible for unauthenticated attackers to…