Known Vulnerabilities for products from Themify

Listed below are 6 of the newest known vulnerabilities associated with the vendor "Themify".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2025-58787 Not Provided 2025-09-05 2026-04-01
CVE-2025-49396 Not Provided 2025-08-20 2026-04-01
CVE-2025-49395 Not Provided 2025-08-20 2026-04-01
CVE-2025-49392 Not Provided 2025-08-20 2026-04-01
CVE-2025-39581 Not Provided 2025-04-16 2026-04-01
CVE-2025-30832 Not Provided 2025-03-27 2026-04-01
CVE-2025-30831 Not Provided 2025-03-27 2026-04-01
CVE-2024-56239 Not Provided 2025-01-02 2026-04-01
CVE-2024-56216 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in them... Not Provided 2024-12-31 2026-04-01
CVE-2024-52423 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify Build... Not Provided 2024-11-18 2026-04-01
CVE-2024-44046 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify – W... Not Provided 2024-10-06 2026-04-01
CVE-2022-0200 Themify Portfolio Post WordPress plugin before 1.1.7 does not sanitise and escape the num_of_pages parameter before outputtin... 5.4 - MEDIUM 2022-02-14 2022-02-19
CVE-2021-24129 Unvalidated input and lack of output encoding in the Themify Portfolio Post WordPress plugin, versions before 1.1.6, lead to ... 5.4 - MEDIUM 2021-03-18 2021-03-24
CVE-2013-20002 Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/t... 9.8 - CRITICAL 2021-06-17 2021-06-23