Themeruby's vulnerability footprint is concentrated in its Foxiz theme product, a web-facing component where the durable signal centers on server-side request forgery (SSRF) weaknesses. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Themeruby over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-37260CRITICAL Server-Side Request Forgery (SSRF) vulnerability in Theme-Ruby Foxiz.This issue affects Foxiz: from n/a through 2.3.5. | Jul 6, 2024 | 9.3 | 27 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Themeruby.
Media articles that mention a CVE ID that affects a product developed by Themeruby — matched by CVE ID, not by vendor name.