Postmagthemes is a niche WordPress theme vendor whose vulnerability footprint is limited to its demo-import functionality, a component with a narrow deployment scope relative to the broader vendor ecosystem. The observed weakness classes in this vendor's disclosures are not yet established as a durable pattern; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Postmagthemes over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-1540HIGH The PostmagThemes Demo Import WordPress plugin through 1.0.7 does not validate the imported file, allowing high-privilege users such as admin to upload arbitrary files (such as PHP | Dec 5, 2022 | 7.2 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Postmagthemes.
Media articles that mention a CVE ID that affects a product developed by Postmagthemes — matched by CVE ID, not by vendor name.