CVE-2024-40514: Themesbrand Chatvia

Medium severity, CVSS 4.6. EPSS: 0.3% chance of exploitation in the next 30 days.

Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to escalate privileges via the User profile name and image upload functions.

Affected products

Published 2025-01-16. Last modified 2026-06-17.