Spoonthemes develops a small portfolio of web-based applications including Adifier and Couponis, with a durable vulnerability signal centered on application-layer input-handling issues such as SQL injection and cross-site scripting. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Spoonthemes over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-49752CRITICAL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoon themes Adifier - Classified Ads WordPress Theme.This issue affects Adifi | Dec 20, 2023 | 9.8 | 26 | NO | NO |
CVE-2023-49750CRITICAL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoonthemes Couponis - Affiliate & Submitting Coupons WordPress Theme.This iss | Dec 19, 2023 | 9.8 | 24 | NO | NO |
CVE-2023-49187MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spoonthemes Adifier - Classified Ads WordPress Theme allows Reflected XSS.This | Dec 15, 2023 | 6.1 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Spoonthemes.
Media articles that mention a CVE ID that affects a product developed by Spoonthemes — matched by CVE ID, not by vendor name.