Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
ThemeGrill

ThemeGrill Vendor Cyber Rating & Cyber Score

themegrill.com

Welcome to ThemeGrill - a leading WordPress development company in Kathmandu, Nepal. Our experienced team creates high-quality, user-friendly themes and plugins that empower clients to enhance their websites. Our popular themes- Zakra, ColorMag, Spacious, and Flash - are trusted by website owners worldwide, with millions of downloads. Additionally, we've developed feature-rich WordPress plugins like User Registration, Everest Forms, Masteriyo, and Blockart. Our products are easy to use, customizable, and optimized for performance. Browse our selection and join thousands of satisfied customers who trust ThemeGrill.


ThemeGrill A.I CyberSecurity Scoring

ThemeGrill
Company Information
Website:https://themegrill.com/
Employees number:40
Number of followers:1,627
NAICS:5112
Industry Type:Software Development
Homepage:themegrill.com
ThemeGrill Risk Score (AI oriented)
Between 700 and 749
logo
ThemeGrillSoftware Development
Updated:
04/06/2026
749/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
ThemeGrill Global Score (TPRM)
xxxx
logo
ThemeGrillSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

ThemeGrill
ThemeGrillModerate
Current Score
749Ba (MODERATE)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
749Before Incident
MAY 2026
749Before Incident
APRIL 2026
751Before Incident
Vulnerability
13 Apr 2026ThemeGrill
Everest Forms Pro: Hackers Actively Exploiting WordPress Plugin Vulnerability to Inject Malicious PHP Code

Critical RCE Vulnerability in Everest Forms Pro Plugin Exploited in the Wild

748After Incident
CRITICAL-3
THE1780575910
Critical RCE Vulnerability in Everest Forms Pro Plugin Exploited in the Wild Hackers are actively exploiting a severe remote code execution (RCE) vulnerability in the Everest Forms Pro WordPress plugin, tracked as CVE-2026-3300 (CVSS 9.8). The flaw, affecting all versions up to 1.9.12, allows unauthenticated attackers to execute arbitrary PHP code on vulnerable websites by manipulating form inputs. The vulnerability stems from the plugin’s "Complex Calculation" feature, where the `process_filter()` function dynamically constructs and evaluates PHP code using `eval()`. Despite input sanitization via `sanitize_text_field()`, the function fails to escape single quotes, enabling attackers to inject malicious payloads through standard form fields (text, email, URL, select, radio). By appending a single quote followed by arbitrary PHP code, threat actors can bypass security controls and gain server-side execution. Publicly disclosed on March 30, 2026, after a patch was released on March 18, 2026, the flaw saw active exploitation beginning April 13, 2026. Wordfence reported blocking over 29,300 exploitation attempts, with a sharp spike of 17,900 attacks on May 16 alone. Attackers primarily exploit the `/wp-admin/admin-ajax.php` endpoint via crafted POST requests, targeting websites with the Complex Calculation feature enabled. Observed attack patterns include the creation of rogue administrator accounts, such as the username "diksimarina", using WordPress’s `wp_insert_user()` function. Once administrative access is obtained, attackers deploy webshells, backdoors, or further compromise the hosting environment. Multiple malicious IPs have been identified, including: - 202.56.2[.]126 (tens of thousands of blocked requests) - 209.146.60[.]26 (thousands of exploit attempts) - 15.235.166[.]18 (hundreds of malicious requests) - 2402:1f00:8000[:]800::40db (IPv6-based attacks) - 185.78.165[.]153 (hostile scanning activity) While Wordfence provided early protection via firewall rules (February 27 for paid users, March 29 for free users), full mitigation requires updating to version 1.9.13. Indicators of compromise include unauthorized admin accounts and suspicious requests from known malicious IPs. The low barrier to exploitation and active campaign make this a high-impact threat to WordPress environments.
INCIDENT DETAILS -
TYPE
Remote Code Execution (RCE)
IMPACT
Systems Affected: WordPress websites using Everest Forms Pro plugin (versions ≤ 1.9.12)Operational Impact: Unauthorized administrative access, webshell deployment, backdoor installation
MARCH 2026
751Before Incident
FEBRUARY 2026
751Before Incident
JANUARY 2026
751Before Incident
DECEMBER 2025
751Before Incident
NOVEMBER 2025
751Before Incident
OCTOBER 2025
751Before Incident
SEPTEMBER 2025
751Before Incident
AUGUST 2025
751Before Incident
JULY 2025
751Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for ThemeGrill ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in May 2026 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in April 2026 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in March 2026 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in February 2026 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in January 2026 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in December 2025 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in November 2025 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in October 2025 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in September 2025 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in August 2025 ?
?
What was ThemeGrill's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on ThemeGrill's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with ThemeGrill ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view ThemeGrill's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?