| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-52826 | WordPress Sala theme <= 1.1.3 - PHP Object Injection Vulnerability | uxper | Sala | High | 8.8 | 2025-06-27 11:52:15 | Deep Dive |
| CVE-2025-52827 | WordPress Nuss theme <= 1.3.3 - PHP Object Injection Vulnerability | uxper | Nuss | High | 8.8 | 2025-06-27 11:52:15 | Deep Dive |
| CVE-2025-49511 | WordPress Civi Framework plugin <= 2.1.6 - Cross Site Request Forgery (CSRF) to User Deactivation vulnerability | uxper | Civi Framework | High | 7.1 | 2025-06-10 12:35:34 | Deep Dive |
| CVE-2025-4797 | Golo <= 1.7.0 - Authentication Bypass to Account Takeover | uxper | Golo - City Travel Guide WordPress Theme | Critical | 9.8 | 2025-06-03 04:22:16 | Deep Dive |
| CVE-2024-13773 | Civi - Job Board & Freelance Marketplace WordPress Theme <= 2.1.4 - Sensitive Information Exposure | uxper | Civi - Job Board & Freelance Marketplace WordPress Theme | High | 7.3 | 2025-03-14 11:15:54 | Deep Dive |
| CVE-2024-13772 | Civi - Job Board & Freelance Marketplace WordPress Theme <= 2.1.6.1 - Authentication Bypass | uxper | Civi - Job Board & Freelance Marketplace WordPress Theme | Medium | 5.6 | 2025-03-14 11:15:53 | Deep Dive |
| CVE-2024-13771 | Civi - Job Board & Freelance Marketplace WordPress Theme <= 2.1.4 - Authentication Bypass via Password Update | uxper | Civi - Job Board & Freelance Marketplace WordPress Theme | Critical | 9.8 | 2025-03-14 11:15:52 | Deep Dive |
| CVE-2024-12876 | Golo - Directory & Listing, Travel WordPress Theme <= 1.6.10 - Missing Authorization to Privilege Escalation via Unauthenticated Arbitrary User Password Change | uxper | Golo - City Travel Guide WordPress Theme | Critical | 9.8 | 2025-03-07 08:21:28 | Deep Dive |