Advanced Filters
CVE Vulnerabilities for "vendor:themebon"
Showing 1-1 of 1 CVEs (filtered from 316,546 total)
The Digital Marketing and Agency Templates Addons for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.1. This is due to missing or incorrect nonce validation on the import_templates() function. This makes it possible for unauthenticated attackers to trigger an import via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
MEDIUM 5.3
EPSS 0.0%
6/13/2025
2025
| Description | Year | ||||
|---|---|---|---|---|---|
5.3MEDIUM | 0.0%Minimal | - | 2025 |
Page 1 of 2