Vulnerabilities (CVE)

Filtered by vendor Sktthemes Subscribe
Filtered by product Skt Templates
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-44007 1 Sktthemes 1 Skt Templates 2026-06-17 N/A 7.1 HIGH
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sonalsinha21 SKT Templates – Elementor & Gutenberg templates skt-templates allows Reflected XSS.This issue affects SKT Templates – Elementor & Gutenberg templates: from n/a through <= 6.14.
CVE-2024-1337 1 Sktthemes 1 Skt Templates 2026-06-17 N/A 4.3 MEDIUM
The SKT Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'saveSktbuilderPageData' function in all versions up to, and including, 4.1. This makes it possible for authenticated attackers, with subscriber access and above, to inject arbitrary content into pages.