Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 572 respecto a la semana anterior
Críticas / altas1301▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)295▼ 215 respecto a la semana anterior
4 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.3) | 0.53% | — | Wensolutions WP Child Theme Generator | 21/6/2024 | 17/6/2026 | The WP Child Theme Generator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wctg_easy_child_theme() function in all versions up to, and including, 1.1.1. This makes it possible for unauthenticated attackers to create a blank child theme and activate it… | |
| Modificada | Alta (7.2) | 2.3% | 💥 Exploit | Wensolutions WP Child Theme Generator | 26/3/2024 | 17/6/2026 | Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: from n/a through 1.0.9. | |
| Modificada | Media (6.4) | 0.65% | — | Childtheme-generator Child Theme Generator | 14/3/2022 | 17/6/2026 | The Child Theme Generator WordPress plugin through 2.2.7 does not sanitise escape the parade parameter before outputting it back, leading to a Reflected Cross-Site Scripting in the admin dashboard | |
| Modificada | Crítica (9.8) | 3.4% | — | Wpserveur WPS Child Theme Generator | 30/8/2019 | 17/6/2026 | The wps-child-theme-generator plugin before 1.2 for WordPress has classes/helpers.php directory traversal. |