Skip to main content

Vendor archive

purethemes CVEs

Beta · best-effort

6 CVEs tagged to vendor purethemes1 Critical, 0 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2025-2232

Published Mar 14, 2025

The Realteo - Real Estate Plugin by Purethemes plugin for WordPress, used by the Findeo Theme, is vulnerable to authentication bypass in all versions up to, and including, 1.2.8.…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-24318

Published Jun 1, 2021

The Listeo WordPress theme before 1.6.11 did not ensure that the Post/Page and Booking to delete belong to the user making the request, allowing any authenticated users to delete…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24317

Published Jun 1, 2021

The Listeo WordPress theme before 1.6.11 did not properly sanitise some parameters in its Search, Booking Confirmation and Personal Message pages, leading to Cross-Site Scripting…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24237

Published Apr 22, 2021

The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not properly sanitise the keyword_search, search_radius. _bedrooms and _bathrooms GET parameters before ou…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1