Known Vulnerabilities for ThemeREX Addons by ThemeREX Group
Listed below are 5 of the newest known vulnerabilities associated with "ThemeREX Addons" by "ThemeREX Group".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102798 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeREX Group ThemeREX... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-102797 json | Server-Side Request Forgery (SSRF) vulnerability in ThemeREX Group ThemeREX Addons trx_addons allows Server Side Request Forg... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-97236 json | Subscriber Cross Site Scripting (XSS) in ThemeREX Addons < 2.45.0 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-97235 json | Unauthenticated Cross Site Scripting (XSS) in ThemeREX Addons < 2.45.0 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-62105 json | Unauthenticated PHP Object Injection in ThemeREX Addons < 2.45.0 versions. | Not Provided | 2026-09-11 | 2026-09-11 |