Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
5.4

RT-Theme 18 Extension CSRF Attack Risk

CVE-2026-39710
Summary

A security weakness in the RT-Theme 18 Extensions allows hackers to trick users into performing unintended actions on your website. This could lead to unauthorized changes or data theft. To protect your site, update to a secure version of the RT-Theme 18 Extensions as soon as possible.

Original title
Cross-Site Request Forgery (CSRF) vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Cross Site Request Forgery.This issue affects RT-Theme 18 | Extensions: from n/a through <=...
Original description
Cross-Site Request Forgery (CSRF) vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Cross Site Request Forgery.This issue affects RT-Theme 18 | Extensions: from n/a through <= 2.5.
Vulnerability type
CWE-352 Cross-Site Request Forgery (CSRF)
Published: 8 Apr 2026 · Updated: 9 Apr 2026 · First seen: 8 Apr 2026