
CVE-2026-39640 Cross-Site Request Forgery (CSRF) vulnerability in mndpsingh287 Theme Editor theme-editor allows Code Injection.This issue affects Theme Editor: from n/a through <= 3… https://www.cve.org/CVERecord?id=CVE-2026-39640
Post summary
The snippet reports a CSRF vulnerability in the mndpsingh287 Theme Editor that permits code injection, including affected versions but no proof‑of‑concept, exploit, patch, or active exploitation.
