Known Vulnerabilities for Theme Per User by Presslabs

Listed below are 1 of the newest known vulnerabilities associated with "Theme Per User" by "Presslabs".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-58403 json Hugo is a static site generator. From v0.123.0 through v0.163.0, Hugo's virtual filesystem is designed so that files under a ... Not Provided 2026-07-06 2026-07-06
CVE-2026-54393 json A stored cross-site scripting vulnerability exists in MISP when the Overmind theme is used. The setHomePage endpoint previous... Not Provided 2026-06-12 2026-06-15
CVE-2026-50135 json Hugo is a static site generator. From 0.123.0 to 0.161.1, a regression made  RootMappingFs.statRoot  use  Stat  (follows ... Not Provided 2026-07-06 2026-07-07
CVE-2026-48759 json TypeBot is a chatbot builder tool. Versions 3.15.2 and below have an Insecure Direct Object Reference vulnerability through c... Not Provided 2026-06-17 2026-06-18
CVE-2026-47068 json Authorization Bypass Through User-Controlled Key vulnerability in phenixdigital phoenix_storybook allows cross-session PubSub... Not Provided 2026-05-20 2026-05-21
CVE-2026-45375 json SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan's Bazaar (community marketplace) render... Not Provided 2026-05-14 2026-05-16
CVE-2026-44767 json setThemeRoot() failed to enforce the sap-allowed-theme-origins allowlist. An attacker-controlled absolute cross-origin URL co... Not Provided 2026-07-14 2026-07-14
CVE-2026-44451 json Lumiverse is a full-featured AI chat application. Prior to 0.9.7, the component override system transpiles user-supplied TSX ... Not Provided 2026-05-26 2026-05-27
CVE-2026-41891 json CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization an... Not Provided 2026-05-07 2026-05-07
CVE-2026-41587 json CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization an... Not Provided 2026-05-07 2026-05-07

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report