Sktthemes Skt Templates vulnerabilities
2 known vulnerabilities affecting sktthemes/skt_templates.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2024-44007P4MEDIUMCVSS 6.1fixed in 6.152024-09-17
CVE-2024-44007 [MEDIUM] CWE-79 CVE-2024-44007: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 SKT Templates – Elementor & Gutenberg templates skt-templates allows Reflected XSS.This issue affects SKT Templates – Elementor & Gutenberg templates: from n/a through <= 6.14.
nvd
CVE-2024-1337P4MEDIUMCVSS 4.3fixed in 4.22024-02-29
CVE-2024-1337 [MEDIUM] CWE-862 CVE-2024-1337: The SKT Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to
The SKT Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'saveSktbuilderPageData' function in all versions up to, and including, 4.1. This makes it possible for authenticated attackers, with subscriber access and above, to inject arbitrary content into pages.
nvd