PatchSiren

themesuite CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL themesuite CVE published 2026-01-08

CVE-2025-67928

A critical SQL injection vulnerability exists in the Automotive Listings plugin, affecting versions from n/a through 18.6. This issue allows for Blind SQL Injection due to improper neutralization of special elements used in an SQL command. The vulnerability has a CVSS score of 9.3 and is considered CRITICAL. Defenders should verify exposure, assess potential impact, and prioritize remediation. The vulnera [truncated]