PatchSiren

Themeton CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Themeton CVE published 2026-06-17

CVE-2025-60230

A critical Deserialization of Untrusted Data vulnerability was discovered in Themeton's The Barber Shop theme, affecting versions from n/a to 1.9. This issue, tracked as CVE-2025-60230, has a CVSS score of 9.8, indicating a high severity level. The vulnerability allows for Object Injection, which can lead to arbitrary code execution. Users of the affected theme should update to a patched version as soon a [truncated]

CRITICAL Themeton CVE published 2026-06-17

CVE-2025-60229

CVE-2025-60229 is a critical Deserialization of Untrusted Data vulnerability in Themeton Lagom, affecting versions from n/a through 2.0. This vulnerability allows for Object Injection, posing a significant risk to users. With a CVSS score of 9.8, it is considered critical. The vulnerability was published on June 17, 2026, and last modified on the same day. Users of Themeton Lagom should take immediate act [truncated]