Vulnerabilities > Themepunch

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-47684 Unspecified vulnerability in Themepunch Essential Grid 3.1.0
Unauth.
network
low complexity
themepunch
6.1
2023-06-19 CVE-2023-2359 Code Injection vulnerability in Themepunch Slider Revolution
The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an arbitrary file upload which may be escalated to Remote Code Execution in some server configurations.
network
low complexity
themepunch CWE-94
8.8
2019-10-22 CVE-2015-9499 Unrestricted Upload of File with Dangerous Type vulnerability in Themepunch Showbiz PRO 1.7.1
The Showbiz Pro plugin through 1.7.1 for WordPress has PHP code execution by uploading a .php file within a ZIP archive.
network
low complexity
themepunch CWE-434
critical
9.8