Known Vulnerabilities for Betheme by MuffinGroup
Listed below are 9 of the newest known vulnerabilities associated with "Betheme" by "MuffinGroup".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65548 json | Contributor Remote Code Execution (RCE) in Betheme <= 28.4.2 versions. | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-6178 json | The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the theme's 'icon_box_2' shortcode in all ve... | Not Provided | 2026-08-26 | 2026-08-26 |
| CVE-2023-29101 json | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Muffingroup Betheme theme <= 26.7.5 versions. | 6.1 - MEDIUM | 2023-05-10 | 2023-05-16 |
| CVE-2022-45363 json | Auth. (subscriber+) Stored Cross-Site Scripting (XSS) in Muffingroup Betheme theme <= 26.6.1 on WordPress. | 5.4 - MEDIUM | 2022-11-22 | 2023-11-07 |
| CVE-2022-45356 json | Not Provided | 2024-03-25 | 2026-04-28 | |
| CVE-2022-45353 json | Not Provided | 2023-01-14 | 2026-04-28 | |
| CVE-2022-45352 json | Not Provided | 2024-03-25 | 2026-04-28 | |
| CVE-2022-45351 json | Not Provided | 2024-03-25 | 2026-04-28 | |
| CVE-2022-45349 json | Not Provided | 2024-03-25 | 2026-04-28 | |
| CVE-2022-45077 json | Auth. (subscriber+) PHP Object Injection vulnerability in Betheme theme <= 26.5.1.4 on WordPress. | 8.8 - HIGH | 2022-11-17 | 2022-11-18 |