Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-45353: WordPress Betheme premium theme <= 26.6.1 - Broken Access Control vulnerability - Patchstack

Broken Access Control in Betheme theme <= 26.6.1 on WordPress.

CVE
#xss#vulnerability#wordpress#auth

Betheme 7

To plugin page No VDP

Report

New Existing

4.3

Medium severity CVSS 3.1 score

Known to be exploited Active attempts logged

Protect your sites with automated security

Enable Protection

Solution

Fixed

Update the WordPress Betheme theme to the latest available version (at least 26.6.3).

DetailsShow technical details

Verified

Dave Jong discovered and reported this Broken Access Control vulnerability in WordPress Betheme Theme. This vulnerability has been fixed in version 26.6.3.

6 other known vulnerabilities for this pluginTo plugin page

Broken Access Control vulnerability <= 26.6.1

6.3

21.11.2022

Broken Access Control vulnerability <= 26.6.1

4.3

21.11.2022

Broken Access Control vulnerability <= 26.6.1

5.4

21.11.2022

Broken Access Control vulnerability <= 26.6.1

5.4

21.11.2022

Auth. Stored CrossSite Scripting (XSS) vulnerability <= 26.6.1

5.4

21.11.2022

Report to Patchstack Alliance bounty platform and earn monthly cash prizes.

Learn more

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907