Thème WordPress
Vulnérabilités Alone – Charity Multipurpose Non-profit WordPress Theme
Cette page rassemble les failles publiées pour Alone – Charity Multipurpose Non-profit WordPress Theme, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Alone – Charity Multipurpose Non-profit WordPress Theme
4 fiches
Alone <= 7.8.3 – Unauthenticated Remote Code Execution
The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.8.3. This makes it possible for unauthenticated attackers to execute code on the server.
*-7.8.3
Non indiqué
16/07/2025
Alone – Charity Multipurpose Non-profit WordPress Theme <= 7.8.5 – Missing Authorization to Unauthenticated Arbitrary File Deletion
The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the alone_import_pack_restore_data() function in all versions up to, and including, 7.8.5. This makes it…
*-7.8.5
7.8.7
14/07/2025
Alone – Charity Multipurpose Non-profit WordPress Theme <= 7.8.3 – Missing Authorization to Unauthenticated Arbitrary File Upload via Plugin Installation
The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the alone_import_pack_install_plugin() function in all versions up to, and including, 7.8.3. This makes it…
*-7.8.3
7.8.5
14/07/2025
Alone <= 7.8.2 – Unauthenticated Remote Code Execution
The Alone – Charity Multipurpose Non-profit WordPress Theme theme for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.8.2. This makes it possible for unauthenticated attackers to execute code on the server.…
*-7.8.2
7.8.5
01/07/2025
Thèmes également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.