What this page helps you verify fast
This hub clusters every indexed record for Chocolate WP – Responsive Photography Theme | Photography so operators can confirm whether a disclosed issue maps to the installed slug, version range, and patch path.
Review known vulnerability records for the WordPress theme Chocolate WP – Responsive Photography Theme | Photography (`dt-chocolate`), including severity, CVE references, affected versions, and patch status.
This hub clusters every indexed record for Chocolate WP – Responsive Photography Theme | Photography so operators can confirm whether a disclosed issue maps to the installed slug, version range, and patch path.
These recent records surface the CVE strings, patch cues, and direct report links most operators need first.
The DT Chocolate theme plugin for WordPress is vulnerable to Cross-Site Scripting in all versions due to insufficient input sanitization and output escaping. This makes it possible for unaut...
The DT Chocolate theme for WordPress is vulnerable to Open Redirect in versions up to, and including, 1.0. This is due to a lack of sanitization of user-supplied input via the 'image' parame...
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Denial of Service and Abuse of Functionality in all versions. This is due to inclusion of a vulnerable version...
Sorted by latest disclosure date so newly published issues surface first.
The DT Chocolate theme plugin for WordPress is vulnerable to Cross-Site Scripting in all versions due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts that execute in a victim's browser.
The DT Chocolate theme for WordPress is vulnerable to Open Redirect in versions up to, and including, 1.0. This is due to a lack of sanitization of user-supplied input via the 'image' parameter. This makes it possible for attackers to redirect users to arbitrary websites.
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Denial of Service and Abuse of Functionality in all versions. This is due to inclusion of a vulnerable version of TimThumb. This makes it possible for unauthenticated attackers to send users to other w...
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Remote File Inclusion in all versions due to inclusion of a vulnerable version of TimThumb. This allows unauthenticated attackers to include remote files on the server, resulting in code execution.
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to inclusion of a vulnerable version of TimThumb in all versions. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that e...
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to arbitrary file uploads due to inclusion of a vulnerable version of TimThumb in all versions. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected sites server...
The Chocolate WP – Responsive Photography Theme for WordPress is vulnerable to Sensitive Data Exposure in all versions via the index.php file and inclusion of a vulnerable version of TimThumb. This can allow unauthenticated attackers to extract sensitive data including the full p...