Skip to main content

Vendor/product archive

themerex / puzzles CVEs

Beta · best-effort

3 CVEs tagged to themerex / puzzles0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2025-0837

Published Feb 13, 2025

The Puzzles theme for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 4.2.6 due to insufficient input sanitization and outp…

CVSS 6.4 · Medium
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2024-13770

Published Feb 13, 2025

The Puzzles | WP Magazine / Review with Store WordPress Theme + RTL theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.2.4 via deser…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-13769

Published Feb 12, 2025

The Puzzles | WP Magazine / Review with Store WordPress Theme + RTL theme for WordPress is vulnerable to Stored Cross-Site Scripting due to a missing capability check on the 'them…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1