Skip to main content

Vendor archive

everestthemes CVEs

Beta · best-effort

11 CVEs tagged to vendor everestthemes0 Critical, 8 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-62992

Published Dec 31, 2025

Cross-Site Request Forgery (CSRF) vulnerability in everestthemes Everest Backup everest-backup allows Path Traversal.This issue affects Everest Backup: from n/a through <= 2.3.11.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-10028

Published Nov 6, 2024

The Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-32531

Published Apr 17, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Everest themes GuCherry Blog allows Reflected XSS.This issue affects GuCherry…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-7201

Published Apr 15, 2024

The Everest Backup WordPress plugin before 2.2.5 does not properly validate backup files to be uploaded, allowing high privilege users such as admin to upload arbitrary files on…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-52185

Published Dec 31, 2023

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Everestthemes Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin.This issue a…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-41235

Published Sep 27, 2023

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest Themes Everest News Pro theme <= 1.1.7 versions.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-27412

Published Aug 8, 2023

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest themes Mocho Blog theme <= 1.0.4 versions.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-27420

Published Jun 16, 2023

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest Themes Arya Multipurpose theme <= 1.0.5 versions.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-27419

Published May 10, 2023

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest themes Viable Blog theme <= 1.1.4 versions.

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1