Photome Themegoods Photome

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Themegoods Photome.

By the Year

In 2026 there have been 3 vulnerabilities in Themegoods Photome with an average score of 7.4 out of ten.

Year Vulnerabilities Average Score
2026 3 7.43

It may take a day or so for new Photome vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Themegoods Photome Security Vulnerabilities

PhotoMe <=5.7.1 DOM XSS in photome Plugin
CVE-2026-24949 7.1 - High - February 20, 2026

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods PhotoMe photome allows DOM-Based XSS.This issue affects PhotoMe: from n/a through <= 5.7.1.

XSS

Insecure Deserialization in ThemeGoods PhotoMe <=5.6.11 (Untrusted Data)
CVE-2025-69301 9.8 - Critical - February 20, 2026

Deserialization of Untrusted Data vulnerability in ThemeGoods PhotoMe photome allows Object Injection.This issue affects PhotoMe: from n/a through <= 5.6.11.

Marshaling, Unmarshaling

SSRF in ThemeGoods PhotoMe <5.7.2
CVE-2026-24381 5.4 - Medium - January 22, 2026

Server-Side Request Forgery (SSRF) vulnerability in ThemeGoods PhotoMe photome allows Server Side Request Forgery.This issue affects PhotoMe: from n/a through < 5.7.2.

SSRF

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Themegoods Photome or by Themegoods? Click the Watch button to subscribe.

Themegoods
Vendor

subscribe