Cross-Site request forgery (CSRF) vulnerability in Extend Themes Skyline WP allows Cross Site Request Forgery.
This issue affects Skyline WP: from n/a through 1.0.10.
CVSS Details
- CVSS 3.1 Base Score: 4.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Consus Theme | — | Update consus theme to version 1.0.7, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
| Ketos Theme | — | Update ketos theme to version 1.0.6, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
| Niveau Theme | — | Update niveau theme to version 1.0.9, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
| Oasis Theme | — | Update oasis theme to version 1.0.13, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
| Skyline Wp Theme | — | Update skyline-wp theme to version 1.0.11, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
| Zeka Theme | — | Update zeka theme to version 1.0.10, or a newer patched version | Dec 8, 2025 | May 13, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub