Known Vulnerabilities for Portfolio by Bestweblayout
Listed below are 10 of the newest known vulnerabilities associated with "Portfolio" by "Bestweblayout".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-39634 json | Cross-Site Request Forgery (CSRF) vulnerability in ThemeGoods Grand Portfolio grandportfolio allows Cross Site Request Forger... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-32537 json | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nK V... | Not Provided | 2026-03-25 | 2026-03-25 |
| CVE-2025-62755 json | Missing Authorization vulnerability in GS Plugins GS Portfolio for Envato gs-envato-portfolio allows Exploiting Incorrectly C... | Not Provided | 2025-12-31 | 2026-04-01 |
| CVE-2025-62098 json | Missing Authorization vulnerability in totalsoft Portfolio Gallery gallery-portfolio allows Exploiting Incorrectly Configured... | Not Provided | 2025-12-31 | 2026-04-01 |
| CVE-2025-59586 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Penci Portf... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-59137 json | Cross-Site Request Forgery (CSRF) vulnerability in eleopard Behance Portfolio Manager portfolio-manager-powered-by-behance al... | Not Provided | 2025-12-31 | 2026-04-01 |
| CVE-2025-59135 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eleopard Behance Portfo... | Not Provided | 2025-12-31 | 2026-04-01 |
| CVE-2025-58245 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bestweblayout Portfolio... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-57982 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPBean Advance Portfoli... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-57932 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Diego Pereira PowerFoli... | Not Provided | 2025-09-22 | 2026-04-01 |