CVE-2024-37930

Insertion of Sensitive Information into Log File vulnerability in ThemeSphere SmartMag smartmag-responsive-retina-wordpress-magazine.This issue affects SmartMag: from n/a through < 10.1.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:theme-sphere:smartmag:*:*:*:*:*:wordpress:*:*

History

23 Apr 2026, 15:18

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 5.3

01 Apr 2026, 16:17

Type Values Removed Values Added
Summary (en) Exposure of Sensitive Information to an Unauthorized Actor, Missing Authorization vulnerability in ThemeSphere SmartMag allows Excavation, Accessing Functionality Not Properly Constrained by ACLs.This issue affects SmartMag: from n/a through 9.3.0. (en) Insertion of Sensitive Information into Log File vulnerability in ThemeSphere SmartMag smartmag-responsive-retina-wordpress-magazine.This issue affects SmartMag: from n/a through < 10.1.0.
References
  • {'url': 'https://patchstack.com/database/vulnerability/smartmag-responsive-retina-wordpress-magazine/wordpress-smartmag-theme-9-3-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve', 'tags': ['Third Party Advisory'], 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Theme/smartmag-responsive-retina-wordpress-magazine/vulnerability/wordpress-smartmag-theme-9-3-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve -
CWE CWE-200 CWE-532

12 Sep 2024, 21:24

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/smartmag-responsive-retina-wordpress-magazine/wordpress-smartmag-theme-9-3-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/smartmag-responsive-retina-wordpress-magazine/wordpress-smartmag-theme-9-3-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve - Third Party Advisory
Summary
  • (es) Exposición de información confidencial a un actor no autorizado, vulnerabilidad de autorización faltante en ThemeSphere SmartMag allows Excavation, Accessing Functionality Not Properly Constrained by ACLs. Este problema afecta a SmartMag: desde n/a hasta 9.3.0.
CPE cpe:2.3:a:theme-sphere:smartmag:*:*:*:*:*:wordpress:*:*
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 7.5
First Time Theme-sphere smartmag
Theme-sphere

12 Aug 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-12 23:15

Updated : 2026-06-17 07:39


NVD link : CVE-2024-37930

Mitre link : CVE-2024-37930

CVE.ORG link : CVE-2024-37930


JSON object : View

Products Affected

theme-sphere

  • smartmag
CWE
CWE-532

Insertion of Sensitive Information into Log File

CWE-862

Missing Authorization