← Back

Themebeez

themebeez

1 CVE • 1 product

Products (1)

Click to collapse
Toggle
Orchid Store
orchid_store

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Themebeez
1Orchid Store
Jun 17, 2026
Aug 8, 2024
N/A· v4
4.3 MEDIUM· v3
N/A· v2
The Orchid Store theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'orchid_store_activate_plugin' function in all versions up to, and including, 1.5.6. This m...Show more
The Orchid Store theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'orchid_store_activate_plugin' function in all versions up to, and including, 1.5.6. This makes it possible for authenticated attackers, with Subscriber-level access and above, to activate the Addonify Floating Cart For WooCommerce plugin if it is installed.Show less