CVE-2026-40761 is a high-severity vulnerability in the Valeska theme, affecting versions up to 1.2.2. This vulnerability allows unauthenticated attackers to inject PHP objects, potentially leading to arbitrary code execution. The CVSS score for this vulnerability is 8.1, indicating a high level of severity. The vulnerability was published on June 17, 2026, and last modified on the same day. Users of the V [truncated]
CVE-2026-40735 is a high-severity vulnerability in Reina theme versions <= 2.1, allowing unauthenticated PHP object injection. This vulnerability has a CVSS score of 8.1 and is considered HIGH severity. The vulnerability was published on June 17, 2026, and last modified on the same day. Users of Reina theme versions <= 2.1 are advised to take immediate action to mitigate this vulnerability. The vulnerabil [truncated]
CVE-2026-39539 is a high-severity vulnerability in the Alloggio - Hotel Booking WordPress theme, versions up to 2.1.2. The vulnerability allows unauthenticated PHP object injection, which can lead to arbitrary code execution. This vulnerability has a CVSS score of 8.1 and is considered HIGH severity. The vulnerability was published on June 17, 2026, and last modified on the same day.