{"ok":true,"trend":{"id":456427,"platform":"mastodon","region":"global","key":"🚨 euvd-2026-89637 📊 score: n/a 📦 product: zella theme 🏢 vendor: unknown 📅 updated: 2026-09-30 📝 the zella theme wordpres","title":"🚨 EUVD-2026-89637 📊 Score: n/a 📦 Product: Zella Theme 🏢 Vendor: Unknown 📅 Updated: 2026-09-30 📝 The Zella Theme WordPres","url":"https://mastodon.social/@EUVD_Bot/117358709263774786","first_seen":"2026-09-30T07:25:47.436133Z","last_seen":"2026-09-30T07:25:47.436133Z","last_rank":10,"peak_rank":10,"last_volume":0,"peak_volume":0,"seen_count":1,"score":0.72109375,"category_hint":"cybersecurity","section":"technology","category":"cybersecurity","summary":"A newly logged vulnerability, EUVD-2026-89637, affects the Zella Theme for WordPress in versions before 2.6.3. The theme fails to perform capability or nonce checks on one of its font upload actions, which is available to unauthenticated users, potentially allowing attackers to upload files without an account. Site administrators running the theme are advised to update to version 2.6.3 or later.","why":"Security trackers and bot feeds flagged a new vulnerability in a widely used WordPress theme, prompting administrators to check their sites.","tone":"neutral","entities":["Zella Theme","WordPress","EUVD-2026-89637"],"summarized_at":"2026-09-30T07:27:22.892191Z","meta":{"tag":"infosec","via":"scan","kind":"status","lang":"en","instance":"mastodon.social","tag_uses":1252},"nw":null,"promo":null,"kind":null,"importance":null,"hidden":false,"hide_reason":null,"judged_at":null,"title_en":"Zella Theme WordPress vulnerability allows unauthenticated font upload","section_name":"Technology","category_name":"Cybersecurity","timeline":[{"captured_at":"2026-09-30T07:25:47.436133Z","rank":10,"volume":0}],"posts":[{"platform":"mastodon","url":"https://mastodon.social/@EUVD_Bot/117358709263774786","author":"EUVD_Bot","title":null,"snippet":"🚨 EUVD-2026-89637 📊 Score: n/a 📦 Product: Zella Theme 🏢 Vendor: Unknown 📅 Updated: 2026-09-30 📝 The Zella Theme WordPress theme before 2.6.3 does not perform any capability or nonce check on one of its font upload actions, which is available to unauthenticated users, allowing…","posted_at":"2026-09-30T07:03:09.309000Z","likes":0}],"elsewhere":[],"window":"7d"}}