CVE-2025-31054: Themefy Bloggie

High severity, CVSS 7.1. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in Themefy Bloggie allows Reflected XSS.This issue affects Bloggie: from n/a through 2.0.8.

Affected products

  • Themefy Bloggie: up to and including 2.0.8

Published 2025-12-31. Last modified 2026-09-23.