Vulnerabilities > Themify > Themify Builder > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-22 CVE-2024-7836 Incorrect Authorization vulnerability in Themify Builder
The Themify Builder plugin for WordPress is vulnerable to unauthorized post duplication due to missing checks on the duplicate_page_ajaxify function in all versions up to, and including, 7.6.1.
network
low complexity
themify CWE-863
4.3
2024-06-13 CVE-2024-3032 Open Redirect vulnerability in Themify Builder
Themify Builder WordPress plugin before 7.5.8 does not validate a parameter before redirecting the user to its value, leading to an Open Redirect issue
network
low complexity
themify CWE-601
6.1