Arbitrary File Upload Vulnerability in Ona Theme by Deothemes
CVE-2026-32482
9.9CRITICAL
What is CVE-2026-32482?
The Ona theme developed by Deothemes contains a vulnerability that permits unrestricted upload of files, enabling attackers to upload potentially malicious web shells to the web server. This security flaw impacts versions up to and including 1.24, posing a significant risk to users who utilize this theme for their websites. Proper security measures and updates are essential to mitigate the risks associated with this vulnerability.
Affected Version(s)
Ona <= n/a