Known Vulnerabilities for WC Builder by HasThemes
Listed below are 2 of the newest known vulnerabilities associated with "WC Builder" by "HasThemes".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-63429 json | HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `POST /api/upload` has no authentication guard, no globa... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-63428 json | HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `completeSubmission` accepts a `hiddenFields: [{id, name... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-62843 json | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-62414 json | The Joomla extension Page Builder CK does not properly apply access control to frontend page list views. | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60031 json | The Joomla extension Quix Page Builder Pro is vulnerable to an information disclosure. Raw exceptions reflected in AJAX handl... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60030 json | The Joomla extension Quix Page Builder Pro is vulnerable to an improper access control. Authenticated users could upload medi... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60029 json | The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated stored XSS vulnerability. Authenticated builder ... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60028 json | The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated stored XSS vulnerability. Authenticated builder ... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60027 json | The Joomla extension Quix Page Builder Pro is vulnerable to a unauthenticated path traversal via form elements. Unauthenticat... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-60026 json | The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated PHP code execution. Authenticated builder user (... | Not Provided | 2026-07-20 | 2026-07-21 |