Vulnerabilities > Contempothemes

DATE CVE VULNERABILITY TITLE RISK
2023-03-27 CVE-2022-47146 Cross-site Scripting vulnerability in Contempothemes Real Estate 7
Unauth.
network
low complexity
contempothemes CWE-79
6.1
2021-07-06 CVE-2021-24387 Cross-site Scripting vulnerability in Contempothemes Real Estate 7
The WP Pro Real Estate 7 WordPress theme before 3.1.1 did not properly sanitise the ct_community parameter in its search listing page before outputting it back in it, leading to a reflected Cross-Site Scripting which can be triggered in both unauthenticated or authenticated user context
4.3