PT-2026-31197 · Themegoods · Themegoods Grand Blog
Published
2026-04-08
·
Updated
2026-04-12
·
CVE-2026-39632
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
ThemeGoods Grand Blog versions through 3.1
Description
A Cross-Site Request Forgery (CSRF) issue exists in ThemeGoods Grand Blog. This allows for the execution of malicious actions on behalf of an authenticated user without their knowledge. The vulnerability allows Cross Site Request Forgery.
Recommendations
Update ThemeGoods Grand Blog to a version greater than 3.1.
Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Themegoods Grand Blog