Browse all 5 CVE security advisories affecting themetechmount. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Themetechmount develops WordPress themes and plugins for website building, with a core use case of creating customizable templates for online businesses. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from insufficient input validation and improper access controls. The organization has accumulated five CVEs, reflecting recurring security gaps in their codebase. While no major public incidents have been documented, their vulnerability pattern suggests a need for enhanced security testing and secure coding practices to mitigate risks for their user base.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-39663 | WordPress TrueBooker plugin <= 1.1.5 - Broken Access Control vulnerability — TrueBookerCWE-862 | 5.3 | Medium | 2026-04-08 |
| CVE-2025-67581 | WordPress TrueBooker plugin <= 1.1.0 - Broken Access Control vulnerability — TrueBookerCWE-862 | 5.3 | Medium | 2025-12-09 |
| CVE-2025-47543 | WordPress TrueBooker plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) Vulnerability — TrueBookerCWE-352 | 4.3 | Medium | 2025-05-07 |
This page lists every published CVE security advisory associated with themetechmount. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.