Vulnerabilities (CVE)

Filtered by vendor Sktthemes Subscribe
Filtered by product Skt Templates
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-1337 1 Sktthemes 1 Skt Templates 2025-02-27 N/A N/A
The SKT Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'saveSktbuilderPageData' function in all versions up to, and including, 4.1. This makes it possible for authenticated attackers, with subscriber access and above, to inject arbitrary content into pages.
CVE-2024-44007 1 Sktthemes 1 Skt Templates 2024-09-24 N/A 6.1 MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SKT Themes SKT Templates – Elementor & Gutenberg templates allows Reflected XSS.This issue affects SKT Templates – Elementor & Gutenberg templates: from n/a through 6.14.