Showing 2 vulnerabilities on this page for HT Mega

Signals CISA KEV Ransomware Nuclei
HasThemes vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

WordPress HT Mega plugin <= 2.5.7 - JSON Path Traversal vulnerability

Path Traversal: '.../...//' vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue affects HT Mega: from n/a through <= 2.5.7.

CWE-22CWE-35Jul 12, 2024
CVSS6.5v3.1EPSS0.704%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

WordPress HT Mega Absolute Addons for Elementor plugin <= 2.2.0 - Unauthenticated Privilege Escalation vulnerability

Improper Privilege Management vulnerability in HasThemes HT Mega allows Privilege Escalation.This issue affects HT Mega: from n/a through 2.2.0.

CWE-269May 17, 20241 related artifact
CVSS9.8v3.1EPSS3.35%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX