CVE Browser

More filters (active)
CVE-2026-66609 CRITICAL

WordPress TheGem (Elementor) theme <= 5.12.3 - SQL Injection vulnerability

CVSS 9.3 EPSS 0.40% Aug 20, 2026
CVE-2026-65480 MEDIUM

WordPress TheGem theme < 5.12.1.1 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.22% Jul 23, 2026
CVE-2026-57804 HIGH

WordPress TheGem Theme Elements (for Elementor) plugin < 5.12.1.1 - Local File Inclusion vulnerability

CVSS 7.5 EPSS 0.51% Jul 13, 2026
CVE-2026-42410 MEDIUM

WordPress TheGem theme Elements (for Elementor) plugin < 5.12.1.1 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.22% Apr 27, 2026
CVE-2025-69360 MEDIUM

WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.11.0 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.16% Jan 6, 2026
CVE-2025-69357 MEDIUM

WordPress TheGem Theme Elements (for Elementor) plugin <= 5.11.0 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.16% Jan 6, 2026
CVE-2025-69356 HIGH

WordPress TheGem Theme Elements (for Elementor) plugin <= 5.11.0 - Local File Inclusion vulnerability

CVSS 7.5 EPSS 0.39% Jan 6, 2026
CVE-2023-32238 MEDIUM

WordPress TheGem theme < 5.8.1.1 - Broken Access Control vulnerability

CVSS 5.4 EPSS 0.20% Dec 29, 2025
CVE-2025-68559 MEDIUM

WordPress TheGem Theme Elements (for Elementor) plugin <= 5.10.5.1 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.16% Dec 23, 2025
CVE-2025-68560 HIGH

WordPress TheGem Theme Elements (for Elementor) plugin <= 5.10.5.1 - Local File Inclusion vulnerability

CVSS 7.5 EPSS 0.38% Dec 23, 2025
CVE-2025-62046 MEDIUM

WordPress TheGem Demo Import (for WPBakery) plugin <= 5.10.5 - Arbitrary Content Deletion vulnerability

CVSS 6.5 EPSS 0.34% Nov 6, 2025
CVE-2025-62045 HIGH

WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.10.5.1 - Local File Inclusion vulnerability

CVSS 8.1 EPSS 0.50% Nov 6, 2025
CVE-2025-62044 MEDIUM

WordPress TheGem Theme Elements (for WPBakery) plugin <= 5.10.5.1 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.25% Nov 6, 2025
CVE-2025-62041 HIGH

WordPress TheGem (Elementor) theme <= 5.10.5.1 - Cross Site Scripting (XSS) vulnerability

CVSS 7.1 EPSS 0.28% Nov 6, 2025
CVE-2025-62012 MEDIUM

WordPress TheGem (Elementor) theme <= 5.10.5 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.20% Nov 6, 2025
CVE-2025-62011 MEDIUM

WordPress TheGem theme <= 5.10.5 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.20% Nov 6, 2025
CVE-2025-60097 MEDIUM

WordPress TheGem Theme <= 5.10.5 - Broken Access Control Vulnerability

CVSS 5.4 EPSS 0.27% Sep 26, 2025
CVE-2025-60096 MEDIUM

WordPress TheGem (Elementor) Theme <= 5.10.5 - Broken Access Control Vulnerability

CVSS 5.4 EPSS 0.27% Sep 26, 2025
CVE-2025-4339 MEDIUM

TheGem <= 5.10.3 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Theme Options Update

CVSS 4.3 EPSS 0.42% May 13, 2025
CVE-2025-4317 HIGH

TheGem <= 5.10.3 - Authenticated (Subscriber+) Arbitrary File Upload

CVSS 8.8 EPSS 1.15% May 13, 2025
CVE-2023-32237 MEDIUM

Auth. Stored Cross-Site Scripting (XSS) vulnerability in TheGem theme by CodexThemes

CVSS 5.4 EPSS 0.36% Mar 26, 2024
CVE-2023-50892 HIGH

WordPress TheGem Theme <= 5.9.1 is vulnerable to Cross Site Scripting (XSS)

CVSS 7.1 EPSS 0.34% Dec 29, 2023

Showing 1 to 22 CVEs · page 1