PatchSiren

Elated-Themes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Elated-Themes CVE published 2026-06-17

CVE-2026-40758

CVE-2026-40758 is a high-severity vulnerability in the Léonie theme, affecting versions up to 1.2.1. This vulnerability allows unauthenticated attackers to inject PHP objects, potentially leading to arbitrary code execution. The CVSS score for this vulnerability is 8.1, indicating a high level of severity. Organizations using the affected Léonie theme versions should take immediate action to mitigate this [truncated]

HIGH Elated-Themes CVE published 2026-06-17

CVE-2026-40754

CVE-2026-40754 is a high-severity vulnerability in the Roisin WordPress theme, affecting versions up to 1.4. This vulnerability allows unauthenticated attackers to inject PHP objects, potentially leading to code execution. With a CVSS score of 8.1, this issue is considered High severity. The vulnerability was published on June 17, 2026, and last modified on the same day. Users of the affected theme should [truncated]

MEDIUM Elated-Themes CVE published 2026-06-17

CVE-2026-39578

CVE-2026-39578 is a medium-severity vulnerability in the Valiance theme, affecting versions <= 1.2. This vulnerability allows unauthenticated PHP object injection, which could potentially lead to security issues. The CVSS score for this vulnerability is 5.5. The vulnerability was published on June 17, 2026, at 13:20:21 UTC and modified at 14:44:26 UTC on the same day. Users of the Valiance theme should ta [truncated]

MEDIUM Elated-Themes CVE published 2026-06-17

CVE-2026-39577

CVE-2026-39577 is a medium-severity vulnerability in the Playroom theme, affecting versions up to 1.4.1. The vulnerability allows unauthenticated PHP object injection, which could potentially lead to security issues. The CVSS score for this vulnerability is 5.5, indicating a medium level of severity. The vulnerability was published on June 17, 2026, and last modified on the same day. Users of the Playroom [truncated]

HIGH Elated-Themes CVE published 2026-06-17

CVE-2026-39568

CVE-2026-39568 is a HIGH severity vulnerability (CVSS Score: 8.1) in the Mr. SEO theme for WordPress versions <= 2.0. This vulnerability allows unauthenticated local file inclusion. The CVE was published on 2026-06-17T13:20:20.703Z and last modified on 2026-06-17T14:44:26.397Z. Users of affected versions should take immediate action to mitigate potential risks.

HIGH Elated-Themes CVE published 2026-06-17

CVE-2026-39554

CVE-2026-39554 is a high-severity vulnerability in the Fidalgo WordPress theme, affecting versions up to 1.2.2. This vulnerability allows unauthenticated attackers to inject PHP objects, potentially leading to code execution, data breaches, or system compromise. With a CVSS score of 8.1, this issue demands immediate attention. The vulnerability was published on June 17, 2026, and last modified on the same [truncated]

HIGH Elated-Themes CVE published 2026-06-17

CVE-2026-39549

CVE-2026-39549 is a HIGH severity vulnerability (CVSS score: 8.1) affecting Aperitif theme versions <= 1.5. This vulnerability allows unauthenticated local file inclusion. The CVE was published on 2026-06-17T13:20:20.043Z and last modified on 2026-06-17T14:44:26.397Z. Users of Aperitif theme versions <= 1.5 should take immediate action to mitigate this vulnerability. The vulnerability is tracked by Patchs [truncated]