CVEs we hold for Themerex
Records whose assigning authority named Themerex as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-62105WordPress ThemeREX Addons plugin < 2.45.0 - PHP Object Injection vulnerabilityThemeREX Addons
CVE-2026-57747WordPress Booked plugin <= 3.0.0 - Cross Site Request Forgery (CSRF) vulnerabilityThemeREX Booked
CVE-2026-39529WordPress Elementra theme <= 1.0.9 - PHP Object Injection vulnerabilityThemeREX Group Elementra
CVE-2026-28120WordPress Dr.Patterson theme <= 1.3.2 - Local File Inclusion vulnerabilityThemeREX Dr.Patterson
CVE-2026-28105WordPress Good Energy theme <= 1.7.7 - PHP Object Injection vulnerabilityThemeREX Good Energy
CVE-2026-28098WordPress Save Life theme <= 1.2.13 - Local File Inclusion vulnerabilityThemeREX Save Life
CVE-2026-28097WordPress Artrium theme <= 1.0.14 - Local File Inclusion vulnerabilityThemeREX Artrium
CVE-2026-28096WordPress WealthCo theme <= 2.18 - Local File Inclusion vulnerabilityThemeREX WealthCo
CVE-2026-28095WordPress Marcell theme <= 1.2.14 - Local File Inclusion vulnerabilityThemeREX Marcell
CVE-2026-28092WordPress Sounder theme <= 1.3.11 - Local File Inclusion vulnerabilityThemeREX Sounder
CVE-2026-28090WordPress Gamezone theme <= 1.1.11 - Local File Inclusion vulnerabilityThemeREX Gamezone
CVE-2026-28089WordPress Daiquiri theme <= 1.2.4 - Local File Inclusion vulnerabilityThemeREX Daiquiri
CVE-2026-28088WordPress Aqualots theme <= 1.1.6 - Local File Inclusion vulnerabilityThemeREX Aqualots
CVE-2026-28077WordPress Vapester theme <= 1.1.10 - Local File Inclusion vulnerabilityThemeREX Vapester
CVE-2026-28074WordPress Pizza House theme <= 1.4.0 - PHP Object Injection vulnerabilityThemeREX Pizza House
CVE-2026-28069WordPress Le Truffe theme <= 1.1.7 - Local File Inclusion vulnerabilityThemeREX Le Truffe
CVE-2026-28067WordPress Bassein theme <= 1.0.15 - Local File Inclusion vulnerabilityThemeREX Bassein
CVE-2026-28064WordPress Edge Decor theme <= 2.2 - Local File Inclusion vulnerabilityThemeREX Edge Decor
CVE-2026-28063WordPress Asia Garden theme <= 1.3.1 - Local File Inclusion vulnerabilityThemeREX Asia Garden
CVE-2026-28062WordPress Happy Baby theme <= 1.2.12 - Local File Inclusion vulnerabilityThemeREX Happy Baby
CVE-2026-28061WordPress Tiger Claw theme <= 1.1.14 - Local File Inclusion vulnerabilityThemeREX Tiger Claw
CVE-2026-28059WordPress Dermatology Clinic theme <= 1.4.3 - Local File Inclusion vulnerabilityThemeREX Dermatology Clinic
CVE-2026-28056WordPress MCKinney's Politics theme <= 1.2.8 - Local File Inclusion vulnerabilityThemeREX MCKinney's Politics
CVE-2026-28055WordPress M.Williamson theme <= 1.2.11 - Local File Inclusion vulnerabilityThemeREX M.Williamson
CVE-2026-28054WordPress Legal Stone theme <= 1.2.11 - Local File Inclusion vulnerabilityThemeREX Legal Stone
CVE-2026-28052WordPress Peter Mason theme <= 1.4.5 - Local File Inclusion vulnerabilityThemeREX Peter Mason
CVE-2026-28051WordPress Yacht Rental theme <= 2.6 - Local File Inclusion vulnerabilityThemeREX Yacht Rental
CVE-2026-28049WordPress Police Department theme <= 2.17 - Local File Inclusion vulnerabilityThemeREX Police Department
CVE-2026-28046WordPress Law Office theme <= 3.3.0 - Local File Inclusion vulnerabilityThemeREX Law Office
CVE-2026-28045WordPress N7 | Golf Club Sports & Events theme <= 2.16.0 - Local File Inclusion vulnerabilityThemeREX N7 | Golf Club Sports & Events
CVE-2026-28043WordPress Healer - Doctor, Clinic & Medical WordPress Theme theme <= 1.0.0 - Local File Inclusion vulnerabilityThemeREX Healer - Doctor, Clinic & Medical WordPress Theme
CVE-2026-28029WordPress EmojiNation theme <= 1.0.12 - Local File Inclusion vulnerabilityThemeREX EmojiNation
CVE-2026-28028WordPress MoneyFlow theme <= 1.0 - Local File Inclusion vulnerabilityThemeREX MoneyFlow
CVE-2026-28018WordPress Global Logistics theme <= 3.20 - Local File Inclusion vulnerabilityThemeREX Global Logistics
CVE-2026-28017WordPress Green Thumb theme <= 1.1.12 - Local File Inclusion vulnerabilityThemeREX Green Thumb
CVE-2026-28016WordPress Luxury Wine theme <= 1.1.14 - Local File Inclusion vulnerabilityThemeREX Luxury Wine
CVE-2026-28015WordPress ShiftCV theme <= 3.0.14 - Local File Inclusion vulnerabilityThemeREX ShiftCV
CVE-2026-28014WordPress Translogic theme <= 1.2.11 - Local File Inclusion vulnerabilityThemeREX Translogic
CVE-2026-28012WordPress Gridiron theme <= 1.0.14 - Local File Inclusion vulnerabilityThemeREX Gridiron
CVE-2026-28010WordPress Scientia theme <= 1.2.4 - Local File Inclusion vulnerabilityThemeREX Scientia
CVE-2026-28007WordPress Coinpress theme <= 1.0.14 - Local File Inclusion vulnerabilityThemeREX Coinpress
CVE-2026-27996WordPress Lingvico theme <= 1.0.14 - Local File Inclusion vulnerabilityThemeREX Lingvico
CVE-2026-27995WordPress Justitia theme <= 1.1.0 - Local File Inclusion vulnerabilityThemeREX Justitia
CVE-2026-27992WordPress Meals & Wheels theme <= 1.1.12 - Local File Inclusion vulnerabilityThemeREX Meals & Wheels
CVE-2026-27991WordPress Avventure theme <= 1.1.12 - Local File Inclusion vulnerabilityThemeREX Avventure
CVE-2026-27987WordPress The Qlean theme <= 2.12 - Local File Inclusion vulnerabilityThemeREX The Qlean
CVE-2026-27437WordPress Tennis Club theme <= 1.2.3 - PHP Object Injection vulnerabilityThemeREX Tennis Club
CVE-2026-27084WordPress Buisson theme <= 1.1.11 - PHP Object Injection vulnerabilityThemeREX Buisson
CVE-2026-27083WordPress Work & Travel Company theme <= 1.2 - PHP Object Injection vulnerabilityThemeREX Work & Travel Company
CVE-2026-27082WordPress Love Story theme <= 1.3.12 - PHP Object Injection vulnerabilityThemeREX Love Story
CVE-2026-22504WordPress ProLingua theme <= 1.1.12 - Local File Inclusion vulnerabilityThemeREX ProLingua
CVE-2026-22494WordPress Good Homes theme <= 1.3.13 - Local File Inclusion vulnerabilityThemeREX Good Homes
CVE-2026-22474WordPress Equestrian Centre theme <= 1.5 - PHP Object Injection vulnerabilityThemeREX Equestrian Centre
CVE-2026-22453WordPress Pets Club theme <= 2.3 - PHP Object Injection vulnerabilityThemeREX Pets Club
CVE-2026-22452WordPress Hoverex theme <= 1.5.10 - Local File Inclusion vulnerabilityThemeREX Hoverex
CVE-2026-22443WordPress Alliance theme <= 3.1.1 - Local File Inclusion vulnerabilityThemeREX Alliance
CVE-2026-22331WordPress AutoParts theme <= 1.5.8 - Local File Inclusion vulnerabilityThemeREX AutoParts
CVE-2025-6997ThemeREX Addons <= 2.35.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via trx_addons_get_svg_from_file…ThemeREX Addons
CVE-2025-69406WordPress FreightCo theme <= 1.1.7 - Local File Inclusion vulnerabilityThemeREX FreightCo
CVE-2025-69405WordPress Lorem Ipsum | Books & Media Store theme <= 1.2.11 - PHP Object Injection vulnerabilityThemeREX Lorem Ipsum | Books & Media Store
CVE-2025-69404WordPress Extreme Store theme <= 1.5.10 - PHP Object Injection vulnerabilityThemeREX Extreme Store
CVE-2025-69396WordPress Splendour theme <= 1.23 - Local File Inclusion vulnerabilityThemeREX Splendour
CVE-2025-69175WordPress Line Agency theme <= 1.3.1 - Local File Inclusion vulnerabilityThemeREX Line Agency
CVE-2025-69170WordPress Eventicity theme <= 1.5 - Local File Inclusion vulnerabilityThemeREX Eventicity
CVE-2025-69166WordPress Gunslinger theme <= 1.7 - Local File Inclusion vulnerabilityThemeREX Gunslinger
CVE-2025-69163WordPress WineShop theme <= 3.17 - Local File Inclusion vulnerabilityThemeREX WineShop
CVE-2025-69144WordPress Preservation theme <= 1.10 - Local File Inclusion vulnerabilityThemeREX Preservation
CVE-2025-69141WordPress Kelly Young theme <= 1.1.0 - Local File Inclusion vulnerabilityThemeREX Kelly Young
CVE-2025-69125WordPress Food Drop theme <= 1.3 - Local File Inclusion vulnerabilityThemeREX Food Drop
CVE-2025-69123WordPress Snow Club theme <= 1.1 - Local File Inclusion vulnerabilityThemeREX Snow Club
CVE-2025-69122WordPress SeaFood Company theme <= 1.4 - PHP Object Injection vulnerabilityThemeREX SeaFood Company
CVE-2025-69121WordPress Deliciosa theme <= 1.10.0 - Local File Inclusion vulnerabilityThemeREX Deliciosa
CVE-2025-69119WordPress Corbesier theme <= 1.15.0 - Local File Inclusion vulnerabilityThemeREX Corbesier
CVE-2025-69118WordPress CopyPress theme <= 1.4.5 - Local File Inclusion vulnerabilityThemeREX CopyPress
CVE-2025-69117WordPress Ingenioso theme <= 1.14.0 - Local File Inclusion vulnerabilityThemeREX Ingenioso
CVE-2025-69115WordPress LuxMed | Medicine & Healthcare Doctor WordPress Theme theme <= 1.2.2 - Local File Inclusion vulnerabilityThemeREX LuxMed | Medicine & Healthcare Doctor WordPress…
CVE-2025-69114WordPress MaxiNet theme <= 1.2.10 - Local File Inclusion vulnerabilityThemeREX MaxiNet
CVE-2025-69110WordPress AirSupply theme <= 2.0.0 - Local File Inclusion vulnerabilityThemeREX AirSupply
CVE-2025-69109WordPress Raider Spirit theme <= 1.1.2 - Local File Inclusion vulnerabilityThemeREX Raider Spirit
CVE-2025-69108WordPress Hot Coffee theme <= 1.7 - PHP Object Injection vulnerabilityThemeREX Hot Coffee
CVE-2025-69105WordPress Modernee theme <= 1.6.0 - Local File Inclusion vulnerabilityThemeREX Modernee
CVE-2025-69079WordPress Sound | Musical Instruments Online Store theme <= 1.6.9 - Deserialization of untrusted data vulnerabilityThemeREX Sound | Musical Instruments Online Store
CVE-2025-60205WordPress ThemeREX Addons plugin <= 2.36.1.1 - PHP Object Injection vulnerabilityThemeREX Addons
CVE-2025-60085WordPress Learnify theme <= 1.15.0 - Local File Inclusion vulnerabilityThemeREX Group Learnify
CVE-2025-58954WordPress HomeRoofer theme <= 2.11.0 - Local File Inclusion vulnerabilityThemeREX HomeRoofer
CVE-2025-58952WordPress Neuronet theme < 1.14.0 - Local File Inclusion vulnerabilityThemeREX Neuronet
CVE-2025-49890WordPress Organic Beauty Theme <= 1.4.6 - PHP Object Injection VulnerabilityThemeREX Organic Beauty
CVE-2025-0837Puzzles <= 4.2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeThemeREX Puzzles | WP Magazine / Review with Store…
CVE-2025-0682ThemeREX Addons <= 2.33.0 - Authenticated (Contributor+) Local File Inclusion via ShortcodeThemeREX Addons
CVE-2024-13786Education Center | LMS & Online Courses WordPress Theme <= 3.6.10 - PHP Object InjectionThemeREX Education Center | LMS & Online Courses WordPress…
CVE-2024-13770Puzzles | WP Magazine / Review with Store WordPress Theme + RTL <= 4.2.4 - Unauthenticated PHP Object InjectionThemeREX Puzzles | WP Magazine / Review with Store…
CVE-2024-13769Puzzles | WP Magazine / Review with Store WordPress Theme + RTL <= 4.2.4 - Missing Authorization to Authenticated…ThemeREX Puzzles | WP Magazine / Review with Store…
CVE-2024-13448ThemeREX Addons <= 2.32.3 - Unauthenticated Arbitrary File Upload in trx_addons_uploads_save_dataThemeREX Addons
190 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.