Vulnerabilities (CVE)

Filtered by vendor Themegoods Subscribe
Filtered by product Grand Conference
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-64224 1 Themegoods 1 Grand Conference 2026-01-29 N/A 7.1 HIGH
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Grand Conference Theme Custom Post Type grandconference-custom-post allows Reflected XSS.This issue affects Grand Conference Theme Custom Post Type: from n/a through < 2.6.4.
CVE-2025-39354 1 Themegoods 1 Grand Conference 2026-01-28 N/A 9.8 CRITICAL
Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Conference allows Object Injection.This issue affects Grand Conference: from n/a through 5.2.
CVE-2025-60116 1 Themegoods 1 Grand Conference 2026-01-27 N/A 5.4 MEDIUM
Missing Authorization vulnerability in ThemeGoods Grand Conference Theme Custom Post Type allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Grand Conference Theme Custom Post Type: from n/a through 2.6.3.