All 3 CVE vulnerabilities found in Catch Themes Demo Import, with AI-generated Chinese analysis, references, and POCs.
Vendor: Catch Themes Demo Import
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-15336 | Catch Themes Demo Import <= 3.3 - Missing Authorization to Authenticated (Subscriber+) Single Plugin Installation via 'activate_plugin' Parameter CWE-862 | 4.3 | Medium | 2026-07-16 |
| CVE-2022-0440 | Catch Themes Demo Import < 2.1.1 - Admin+ Remote Code Execution CWE-434 | 7.2 | - | 2022-03-07 |
| CVE-2021-39352 | Catch Themes Demo Import <= 1.7 Admin+ Arbitrary File Upload CWE-434 | 7.2 | High | 2021-10-21 |
All 3 known CVE vulnerabilities affecting Catch Themes Demo Import with full Chinese analysis, references, and POCs where available.