Thème WordPress
Vulnérabilités TheGem – Creative Multi-Purpose & WooCommerce WordPress Theme
Cette page rassemble les failles publiées pour TheGem – Creative Multi-Purpose & WooCommerce WordPress Theme, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de TheGem – Creative Multi-Purpose & WooCommerce WordPress Theme
3 fiches
TheGem (Elementor) <= 5.10.5.1 – Unauthenticated Stored Cross-Site Scripting
The TheGem (Elementor) theme for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.10.5.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web…
*-5.10.5.1
5.10.5.2
12/10/2025
TheGem (Elementor) <= 5.10.5 – Missing Authorization
The TheGem (Elementor) theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 5.10.5. This makes it possible for authenticated attackers, with subscriber-level access and…
*-5.10.5
5.10.5.1
26/09/2025
TheGem (Elementor) <= 5.10.5 – Authenticated (Subscriber+) Stored Cross-Site Scripting
The TheGem (Elementor) theme for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.10.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level access and…
*-5.10.5
5.10.5.1
03/09/2025
Thèmes également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.