VendorsSpice Themesnewscrunchall versions
Vulnerabilities

Spice Themes Newscrunch

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2025-1307
Newscrunch <= 1.8.4 - Authenticated (Subscriber+) Arbitrary File Upload
Published 2025-03-04 · Analyzed
9.8EPSS 0.022
CVE-2025-1306
Newscrunch <= 1.8.4 - Cross-Site Request Forgery to Arbitrary File Upload
Published 2025-03-04 · Analyzed
8.8EPSS 0.005