VYPR
Vendor

ThemeMakers

Products
9
CVEs
3
Across products
5
Status
Private

Products

9

Recent CVEs

3
  • CVE-2025-1282HigFeb 27, 2025
    risk 0.57cvss 8.8epss 0.01

    The Car Dealer Automotive WordPress Theme – Responsive theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_post_photo() and add_car() functions in all versions up to, and including, 1.6.3. This makes it possible…

  • CVE-2025-1690MedFeb 27, 2025
    risk 0.35cvss 6.4epss 0.00

    The ThemeMakers Stripe Checkout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'stripe' shortcode in versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for…

  • CVE-2025-1689MedFeb 27, 2025
    risk 0.35cvss 6.4epss 0.00

    The ThemeMakers PayPal Express Checkout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'paypal' shortcode in versions up to, and including, 1.1.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it…