cozythemes CVE Vulnerabilities & CVE List (6)

Products (CPE): — CVEs: 6

cozythemes vulnerability overview

Aggregates CVE and security vulnerability intelligence across all cozythemes-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk cross-site scripting; exposure may include vendor impact session compromise in vendor surface software deployment and vendor surface production workloads contexts.

Vulnerability distribution trend (last 24 months)

Showing 16 of 6 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-43980 Missing Authorization vulnerability in CozyThemes Fota WP allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fota WP: from n/a through 1.4.1. [email protected] 6.5 0.20% 2024-11-01 2024-11-08
CVE-2024-43979 Missing Authorization vulnerability in CozyThemes Blockbooster allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Blockbooster: from n/a through 1.0.10. [email protected] 6.5 0.25% 2024-11-01 2024-11-08
CVE-2024-43974 Missing Authorization vulnerability in CozyThemes ReviveNews allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects ReviveNews: from n/a through 1.0.2. [email protected] 6.5 0.25% 2024-11-01 2024-11-08
CVE-2024-43341 Missing Authorization vulnerability in CozyThemes Hello Agency allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Hello Agency: from n/a through 1.0.5. [email protected] 6.5 0.25% 2024-11-01 2024-11-13
CVE-2024-50441 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.15. [email protected] 6.5 0.26% 2024-10-28 2026-04-23
CVE-2024-50502 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows DOM-Based XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.18. [email protected] 6.5 0.14% 2024-10-28 2026-04-23
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence