PatchSiren

Designthemes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Designthemes CVE published 2026-07-02

CVE-2025-69155

CVE-2025-69155 is a high-severity unauthenticated Cross Site Scripting (XSS) vulnerability in the Fitness Zone WordPress Theme versions <= 5.7. The CVE record was published on 2026-07-02T12:16:53.937Z and was last modified on 2026-10-06T22:10:00.247Z. The NVD entry is currently Deferred.

HIGH designthemes CVE published 2026-07-02

CVE-2025-69154

CVE-2025-69154 is a high-severity unauthenticated Cross Site Scripting (XSS) vulnerability in the SpaLab | Beauty Salon WordPress Theme version 6.7 or earlier. The vulnerability has a CVSS score of 7.1 and is considered high severity.

HIGH designthemes CVE published 2026-07-02

CVE-2025-69153

CVE-2025-69153 is a high-severity unauthenticated Cross Site Scripting (XSS) vulnerability in Trendy Travel versions 6.7 and below. The vulnerability has a CVSS score of 7.1 and is considered high risk.