VendorsTheCartPressboot_storeall versions
Vulnerabilities

TheCartPress Boot Store

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2015-4582
The TheCartPress boot-store (aka Boot Store) theme 1.6.4 for WordPress allows header.php tcp_register_error XSS. NOTE: CVE-2015-4582 is not assigned to any Oracle product.
Published 2025-04-28 · Analyzed
7.2EPSS 0.003
CVE-2024-5938
Boot Store <= 1.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Shortcode
Published 2024-07-02 · Modified
6.4EPSS 0.003