Description
Subscriber Arbitrary File Upload in Kids Gift Shop <= 0.5.4 versions.
No analysis available yet.
Remediation
Vendor Solution
Update the WordPress Kids Gift Shop Theme to the latest available version (at least 0.5.5).
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 17 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Subscriber Arbitrary File Upload in Kids Gift Shop <= 0.5.4 versions. | |
| Title | WordPress Kids Gift Shop theme <= 0.5.4 - Arbitrary File Upload vulnerability | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-17T15:30:57.226Z
Reserved: 2026-04-15T09:19:38.195Z
Link: CVE-2026-40748
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-434
Unrestricted Upload of File with Dangerous Type