CVE-2026-27096: Buddhathemes Colorfolio - Freelance Designer WordPress Theme

High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Deserialization of Untrusted Data vulnerability in BuddhaThemes ColorFolio - Freelance Designer WordPress Theme allows Object Injection.This issue affects ColorFolio - Freelance Designer WordPress Theme: from n/a through 1.3.

Affected products

  • Buddhathemes Colorfolio - Freelance Designer WordPress Theme: up to and including 1.3

Published 2026-03-19. Last modified 2026-06-17.