CVE-2025-53277: Infigo Software Is-Theme-Companion
High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Cross-Site Request Forgery (CSRF) vulnerability in Infigo Software IS-theme-companion weblizar-companion allows Object Injection.This issue affects IS-theme-companion: from n/a through <= 1.59.
Affected products
- Infigo Software Is-Theme-Companion: up to and including 1.59
Published 2025-06-27. Last modified 2026-06-17.