WordPress Vulnerability Report

WordPress Vulnerability Report — March 4, 2026

Since last week, 281 new vulnerabilities have emerged in the WordPress ecosystem, including 108 plugins and 173 themes. Of those, 225 remain unpatched, but Solid Security Pro users are protected by virtual patching from Patchstack.

Avatar photo
Sarah Ulmer

In this report, 281 vulnerabilities have been publicly disclosed. Security patches for 56 of these plugins and themes are now available. Please run these updates as soon as possible. If you’re a Solid Security Pro user, the version management tool may have already warned you and updated these plugins, depending on your settings.

Currently, 225 plugin and theme vulnerabilities remain unpatched. If you’re a Solid Security Pro user, those vulnerabilities are already protected by the Solid Security firewall. Virtual patches from Patchstack will be applied when a vulnerability is considered high or medium risk. If no patch is forthcoming from the vendor or the vulnerable software has been marked “closed” and dropped from the official WordPress repositories, you should deactivate it soon and look for alternative solutions.

Along with poor user account security, vulnerable plugins and themes are among the top reasons why WordPress websites get hacked. Unfortunately, cyberattacks are increasing in volume and sophistication. They’re also increasingly aimed at small to mid-sized businesses.

Our WordPress Vulnerability Report covers the latest emerging WordPress plugin, theme, and core vulnerabilities. Each vulnerability will have a severity rating of LowMediumHigh, or Critical. Responsible disclosure of vulnerabilities is essential to keeping the WordPress community safe. Please share this report to help spread the word and make WordPress — and the web — more secure.

WordPress Core

WordPress 7.0 Beta 2 is now available for testing. As this is a pre-release version, it is intended for testing and development only and should not be installed on production or mission-critical sites. Organizations should use local or staging environments to evaluate compatibility and new features before the final rollout.

The full release of WordPress 7.0 is currently scheduled for April 9, 2026. You can find the complete release schedule and technical testing details in the official announcement.

No new core vulnerabilities were disclosed this week.

WordPress Plugins — 50 Patched / 58 Unpatched

W3 Total Cache

Plugin Slug:
w3-total-cache
Installations
900,000+
Vulnerability:
Arbitrary Code Execution
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

SiteGuard WP Plugin

Plugin Slug:
siteguard
Installations
600,000+
Vulnerability:
Bypass Vulnerability
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

NextScripts: Social Networks Auto-Poster

Plugin Slug:
social-networks-auto-poster-facebook-twitter-g
Installations
30,000+
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Builderall for WordPress

Plugin Slug:
builderall-cheetah-for-wp
Installations
1,000+
Vulnerability:
Remote Code Execution (RCE)
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

Directory Listings WordPress plugin – uListing

Plugin Slug:
ulisting
Installations
1,000+
Vulnerability:
Arbitrary File Download
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

Filr – Secure document library

Plugin Slug:
filr-protection
Installations
800+
Vulnerability:
Arbitrary File Upload
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Scientific and Interactive Blocks – inseri core

Plugin Slug:
inseri-core
Installations
80+
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

Site Suggest

Plugin Slug:
site-suggest
Installations
30+
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

Super Stage WP

Plugin Slug:
super-stage-wp
Installations
10+
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

WP Attractive Donations System – Easy Stripe & Paypal donations

Plugin:
WP Attractive Donations System – Easy Stripe & Paypal donations
Plugin Slug:
WP_AttractiveDonationsSystem
Vulnerability:
SQL Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

AllInOne – Banner Rotator

Plugin:
AllInOne – Banner Rotator
Plugin Slug:
all-in-one-bannerRotator
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

LambertGroup – AllInOne – Banner with Playlist

Plugin:
LambertGroup – AllInOne – Banner with Playlist
Plugin Slug:
all-in-one-bannerWithPlaylist
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

LambertGroup – AllInOne – Content Slider

Plugin:
LambertGroup – AllInOne – Content Slider
Plugin Slug:
all-in-one-contentSlider
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

LambertGroup – AllInOne – Banner with Thumbnails

Plugin:
LambertGroup – AllInOne – Banner with Thumbnails
Plugin Slug:
all-in-one-thumbnailsBanner
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Awa Plugins

Plugin:
Awa Plugins
Plugin Slug:
awa-plugins
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Cost Calculator Pro

Plugin:
Cost Calculator Pro
Plugin Slug:
cost-calculator
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.
Plugin:
Custom Logo
Plugin Slug:
custom-logo
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

DesignThemes Booking Manager

Plugin:
DesignThemes Booking Manager
Plugin Slug:
designthemes-booking-manager
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

DesignThemes Directory Addon

Plugin:
DesignThemes Directory Addon
Plugin Slug:
designthemes-directory-addon
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

DesignThemes Portfolio

Plugin:
DesignThemes Portfolio
Plugin Slug:
designthemes-portfolio
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Directory Pro

Plugin:
Directory Pro
Plugin Slug:
directory-pro
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Eagle Booking

Plugin:
Eagle Booking
Plugin Slug:
eagle-booking
Vulnerability:
SQL Injection
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Easy Author Image

Plugin:
Easy Author Image
Plugin Slug:
easy-author-image
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

Electric Enquiries

Plugin:
Electric Enquiries
Plugin Slug:
electric-enquiries
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

EventON

Plugin:
EventON
Plugin Slug:
eventon
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Ultimate Learning Pro

Plugin:
Ultimate Learning Pro
Plugin Slug:
indeed-learning-pro
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

iXML

Plugin:
iXML
Plugin Slug:
ixml
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Lawyer Directory

Plugin:
Lawyer Directory
Plugin Slug:
lawyer-directory
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

LBG Zoominoutslider

Plugin:
LBG Zoominoutslider
Plugin Slug:
lbg_zoominoutslider
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

ListingPro

Plugin:
ListingPro
Plugin Slug:
listingpro-plugin
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

LMS Elementor Pro

Plugin:
LMS Elementor Pro
Plugin Slug:
lms-elementor-pro
Vulnerability:
Privilege Escalation
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

OVRI Payment

Plugin:
OVRI Payment
Plugin Slug:
moneytigo
Vulnerability:
Backdoor
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

Profile Builder Pro

Plugin:
Profile Builder Pro
Plugin Slug:
profile-builder-pro
Vulnerability:
SQL Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.
Plugin:
Responsive Posts Carousel Pro
Plugin Slug:
responsive-posts-carousel-pro
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

RH Frontend Publishing Pro

Plugin:
RH Frontend Publishing Pro
Plugin Slug:
rh-frontend
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Rise Blocks

Plugin:
Rise Blocks
Plugin Slug:
rise-blocks
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

TP2WP Importer

Plugin:
TP2WP Importer
Plugin Slug:
tp2wp-importer
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

UberSlider Classic

Plugin:
UberSlider Classic
Plugin Slug:
uberSlider_classic
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

UberSlider MouseInteraction

Plugin:
UberSlider MouseInteraction
Plugin Slug:
uberSlider_mouseinteraction
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

UberSlider PerpetuumMobile

Plugin:
UberSlider PerpetuumMobile
Plugin Slug:
uberSlider_perpetuummobile
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

UberSlider Ultra

Plugin:
UberSlider Ultra
Plugin Slug:
uberSlider_ultra
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Ultimate Addons for WPBakery Page Builder

Plugin:
Ultimate Addons for WPBakery Page Builder
Plugin Slug:
ultimate_vc_addons
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

WP Bakery Autoresponder Addon

Plugin:
WP Bakery Autoresponder Addon
Plugin Slug:
vc-autoresponder-addon
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

WP Bakery Autoresponder Addon

Plugin:
WP Bakery Autoresponder Addon
Plugin Slug:
vc-autoresponder-addon
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

WeDesignTech Ultimate Booking Addon

Plugin:
WeDesignTech Ultimate Booking Addon
Plugin Slug:
wedesigntech-ultimate-booking-addon
Vulnerability:
Broken Authentication
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should deactivate the plugin.

WeDesignTech Ultimate Booking Addon

Plugin:
WeDesignTech Ultimate Booking Addon
Plugin Slug:
wedesigntech-ultimate-booking-addon
Vulnerability:
Broken Authentication
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

WooCommerce Coming Soon Product with Countdown

Plugin:
WooCommerce Coming Soon Product with Countdown
Plugin Slug:
woo-coming-soon-product
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

WooCommerce Order Details

Plugin:
WooCommerce Order Details
Plugin Slug:
woocommerce-order-details
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Worry Proof Backup

Plugin:
Worry Proof Backup
Plugin Slug:
worry-proof-backup
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

WP Ad Guru

Plugin:
WP Ad Guru
Plugin Slug:
wp-ad-guru
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

Conditional CAPTCHA

Plugin:
Conditional CAPTCHA
Plugin Slug:
wp-conditional-captcha
Vulnerability:
Open Redirection
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

WP eMember

Plugin:
WP eMember
Plugin Slug:
wp-eMember
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

WP Responsive Images

Plugin:
WP Responsive Images
Plugin Slug:
wp-responsive-images
Vulnerability:
Arbitrary File Download
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

WP Social Meta

Plugin:
WP Social Meta
Plugin Slug:
wp-social-meta
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should deactivate the plugin.

xmlrpc attacks blocker

Plugin:
xmlrpc attacks blocker
Plugin Slug:
xmlrpc-attacks-blocker
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should deactivate the plugin.

The Events Calendar

Plugin Slug:
the-events-calendar
Installations
700,000+
Vulnerability:
Broken Access Control
Patched in Version:
6.15.16.1
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 6.15.16.1.

Page Builder by SiteOrigin

Plugin Slug:
siteorigin-panels
Installations
500,000+
Vulnerability:
Local File Inclusion
Patched in Version:
2.34.0
Severity Score:
High
The vulnerability has been patched, so you should update to version 2.34.0.

WP Mail Logging

Plugin Slug:
wp-mail-logging
Installations
300,000+
Vulnerability:
PHP Object Injection
Patched in Version:
1.16
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 1.16.

Post Duplicator

Plugin Slug:
post-duplicator
Installations
200,000+
Vulnerability:
Broken Access Control
Patched in Version:
3.0.9
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 3.0.9.

Disable Admin Notices – Hide Dashboard Notifications

Plugin Slug:
disable-admin-notices
Installations
100,000+
Vulnerability:
Cross Site Request Forgery (CSRF)
Patched in Version:
1.4.3
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 1.4.3.
Plugin Slug:
responsive-lightbox
Installations
100,000+
Vulnerability:
Server Side Request Forgery (SSRF)
Patched in Version:
2.7.2
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 2.7.2.
Plugin Slug:
responsive-lightbox
Installations
100,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
2.6.1
Severity Score:
High
The vulnerability has been patched, so you should update to version 2.6.1.

Tutor LMS – eLearning and online course solution

Plugin Slug:
tutor
Installations
100,000+
Vulnerability:
SQL Injection
Patched in Version:
3.9.7
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 3.9.7.

Tutor LMS – eLearning and online course solution

Plugin Slug:
tutor
Installations
100,000+
Vulnerability:
Broken Access Control
Patched in Version:
3.9.6
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 3.9.6.

User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder

Plugin Slug:
user-registration
Installations
60,000+
Vulnerability:
Broken Authentication
Patched in Version:
5.1.3
Severity Score:
High
The vulnerability has been patched, so you should update to version 5.1.3.

User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder

Plugin Slug:
user-registration
Installations
60,000+
Vulnerability:
Insecure Direct Object References (IDOR)
Patched in Version:
5.1.3
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 5.1.3.

WP Accessibility

Plugin Slug:
wp-accessibility
Installations
60,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
2.3.2
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 2.3.2.

WP Recipe Maker

Plugin Slug:
wp-recipe-maker
Installations
50,000+
Vulnerability:
Insecure Direct Object References (IDOR)
Patched in Version:
10.3.3
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 10.3.3.

WP Recipe Maker

Plugin Slug:
wp-recipe-maker
Installations
50,000+
Vulnerability:
Broken Access Control
Patched in Version:
10.3.0
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 10.3.0.

Simple Membership

Plugin Slug:
simple-membership
Installations
40,000+
Vulnerability:
Broken Access Control
Patched in Version:
4.7.1
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 4.7.1.

PowerPress Podcasting plugin by Blubrry

Plugin Slug:
powerpress
Installations
30,000+
Vulnerability:
PHP Object Injection
Patched in Version:
11.15.11
Severity Score:
High
The vulnerability has been patched, so you should update to version 11.15.11.

Xpro Addons — 140+ Widgets for Elementor

Plugin Slug:
xpro-elementor-addons
Installations
30,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
1.4.25
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 1.4.25.

Secure Copy Content Protection and Content Locking

Plugin Slug:
secure-copy-content-protection
Installations
20,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
5.0.2
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 5.0.2.

Simple Download Monitor

Plugin Slug:
simple-download-monitor
Installations
20,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
4.0.6
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 4.0.6.

WP Customer Reviews

Plugin Slug:
wp-customer-reviews
Installations
20,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
3.7.6
Severity Score:
High
The vulnerability has been patched, so you should update to version 3.7.6.

WPZOOM Addons for Elementor – Starter Templates & Widgets

Plugin Slug:
wpzoom-elementor-addons
Installations
20,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
1.3.5
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.3.5.

Japanized for WooCommerce

Plugin Slug:
woocommerce-for-japan
Installations
10,000+
Vulnerability:
Broken Access Control
Patched in Version:
2.8.5
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 2.8.5.

Analytics Cat – Google Analytics Made Easy

Plugin Slug:
analytics-cat
Installations
7,000+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
1.1.3
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.1.3.

Geo Mashup

Plugin:
Geo Mashup
Plugin Slug:
geo-mashup
Installations
2,000+
Vulnerability:
SQL Injection
Patched in Version:
1.13.18
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 1.13.18.

WPGSI: Spreadsheet Integration

Plugin Slug:
wpgsi
Installations
2,000+
Vulnerability:
Broken Access Control
Patched in Version:
3.8.4
Severity Score:
High
The vulnerability has been patched, so you should update to version 3.8.4.

Ebook Store

Plugin Slug:
ebook-store
Installations
900+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
5.8002
Severity Score:
High
The vulnerability has been patched, so you should update to version 5.8002.

My Tickets – Accessible Event Ticketing

Plugin Slug:
my-tickets
Installations
700+
Vulnerability:
Sensitive Data Exposure
Patched in Version:
2.1.1
Severity Score:
High
The vulnerability has been patched, so you should update to version 2.1.1.

Theater for WordPress

Plugin Slug:
theatre
Installations
600+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
0.19.1
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 0.19.1.

AI ChatBot with ChatGPT and Content Generator by AYS

Plugin Slug:
ays-chatgpt-assistant
Installations
500+
Vulnerability:
Broken Access Control
Patched in Version:
2.7.6
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 2.7.6.

MailArchiver

Plugin Slug:
mailarchiver
Installations
100+
Vulnerability:
SQL Injection
Patched in Version:
4.5.1
Severity Score:
High
The vulnerability has been patched, so you should update to version 4.5.1.

PKT1 Centro de envios

Plugin Slug:
pkt1-centro-de-envios
Installations
40+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
1.2.2
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.2.2.

Planaday API

Plugin Slug:
planaday-api
Installations
30+
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
11.5
Severity Score:
High
The vulnerability has been patched, so you should update to version 11.5.

Fluent Forms Pro Add On Pack

Plugin:
Fluent Forms Pro Add On Pack
Plugin Slug:
fluentformpro
Vulnerability:
Broken Access Control
Patched in Version:
6.1.18
Severity Score:
High
The vulnerability has been patched, so you should update to version 6.1.18.

WooCommerce License Manager

Plugin:
WooCommerce License Manager
Plugin Slug:
fs-license-manager
Vulnerability:
Arbitrary File Upload
Patched in Version:
7.0.7
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 7.0.7.

JetEngine

Plugin:
JetEngine
Plugin Slug:
jet-engine
Vulnerability:
Remote Code Execution (RCE)
Patched in Version:
3.8.1.2
Severity Score:
High
The vulnerability has been patched, so you should update to version 3.8.1.2.

pixfort Core

Plugin:
pixfort Core
Plugin Slug:
pixfort-core
Vulnerability:
Broken Access Control
Patched in Version:
3.2.26
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 3.2.26.

pixfort Core

Plugin:
pixfort Core
Plugin Slug:
pixfort-core
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
3.2.26
Severity Score:
High
The vulnerability has been patched, so you should update to version 3.2.26.

Really Simple Security Pro

Plugin:
Really Simple Security Pro
Plugin Slug:
really-simple-ssl-pro
Vulnerability:
Insecure Direct Object References (IDOR)
Patched in Version:
9.5.4.1
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 9.5.4.1.

Riode Core

Plugin:
Riode Core
Plugin Slug:
riode-core
Vulnerability:
SQL Injection
Patched in Version:
1.6.27
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 1.6.27.

WeDesignTech Ultimate Booking Addon

Plugin:
WeDesignTech Ultimate Booking Addon
Plugin Slug:
wedesigntech-ultimate-booking-addon
Vulnerability:
Broken Access Control
Patched in Version:
1.0.4
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.0.4.

WordPress Themes — 6 Patched / 167 Unpatched

Nirvana

Theme:
Nirvana
Theme Slug:
nirvana
Downloads
773,853
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

OsTende

Theme:
OsTende
Theme Slug:
ostende
Downloads
8,315
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Alchemists

Theme:
Alchemists
Theme Slug:
alchemists
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Aldo

Theme:
Aldo
Theme Slug:
aldo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Alliance

Theme:
Alliance
Theme Slug:
alliance
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Anderson

Theme:
Anderson
Theme Slug:
andersonclinic
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Aora

Theme:
Aora
Theme Slug:
aora
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Apollo | Night Club, DJ Event WordPress Theme

Theme:
Apollo | Night Club, DJ Event WordPress Theme
Theme Slug:
apollo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Aqualots

Theme:
Aqualots
Theme Slug:
aqualots
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Architecturer

Theme:
Architecturer
Theme Slug:
architecturer
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Artrium

Theme:
Artrium
Theme Slug:
artrium
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Asia Garden

Theme:
Asia Garden
Theme Slug:
asia-garden
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Aviana

Theme:
Aviana
Theme Slug:
aviana
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Avventure

Theme:
Avventure
Theme Slug:
avventure
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Bassein

Theme:
Bassein
Theme Slug:
bassein
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Bazinga

Theme:
Bazinga
Theme Slug:
bazinga
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Beacon

Theme:
Beacon
Theme Slug:
beacon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Bonbon

Theme:
Bonbon
Theme Slug:
bonbon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Buzz Stone | Magazine & Viral Blog WordPress Theme

Theme:
Buzz Stone | Magazine & Viral Blog WordPress Theme
Theme Slug:
buzzstone
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Celeste

Theme:
Celeste
Theme Slug:
celeste
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Miller

Theme:
Miller
Theme Slug:
christine-miller
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Chroma

Theme:
Chroma
Theme Slug:
chroma
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Chronicle – Lifestyle Magazine & Blog WordPress Theme

Theme:
Chronicle – Lifestyle Magazine & Blog WordPress Theme
Theme Slug:
chronicle
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Claue – Clean, Minimal Elementor WooCommerce Theme

Theme:
Claue – Clean, Minimal Elementor WooCommerce Theme
Theme Slug:
claue
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

CloudMe

Theme:
CloudMe
Theme Slug:
cloudme
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Cocco

Theme:
Cocco
Theme Slug:
cocco
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Coinpress

Theme:
Coinpress
Theme Slug:
coinpress
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Coleo

Theme:
Coleo
Theme Slug:
coleo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

ConFix

Theme:
ConFix
Theme Slug:
confix
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Conquerors

Theme:
Conquerors
Theme Slug:
conquerors
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.
Theme:
Consultor | Consulting, Accounting & Legal Counsel WordPress Theme
Theme Slug:
consultor
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Cortex

Theme:
Cortex
Theme Slug:
cortex
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Craftis

Theme:
Craftis
Theme Slug:
craftis
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Crown Art

Theme:
Crown Art
Theme Slug:
crown-art
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Daiquiri

Theme:
Daiquiri
Theme Slug:
daiquiri
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Dentario

Theme:
Dentario
Theme Slug:
dentario
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

Dermatology Clinic

Theme:
Dermatology Clinic
Theme Slug:
dermatology-clinic
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Dixon

Theme:
Dixon
Theme Slug:
dixon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Dolcino

Theme:
Dolcino
Theme Slug:
dolcino
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Dr.Patterson

Theme:
Dr.Patterson
Theme Slug:
dr-patterson
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

DroneX

Theme:
DroneX
Theme Slug:
dronex
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Edge Decor

Theme:
Edge Decor
Theme Slug:
edge-decor
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Edifice

Theme:
Edifice
Theme Slug:
edifice
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Eject

Theme:
Eject
Theme Slug:
eject
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Ekoterra – NonProfit, Green Energy & Ecology Theme

Theme:
Ekoterra – NonProfit, Green Energy & Ecology Theme
Theme Slug:
ekoterra
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

ElectroServ

Theme:
ElectroServ
Theme Slug:
electroserv
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

EmojiNation

Theme:
EmojiNation
Theme Slug:
emojination
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Eona

Theme:
Eona
Theme Slug:
eona
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Equadio

Theme:
Equadio
Theme Slug:
equadio
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Evently

Theme:
Evently
Theme Slug:
evently
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Filmax

Theme:
Filmax
Theme Slug:
filmax
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Fiorello

Theme:
Fiorello
Theme Slug:
fiorello
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

FixTeam

Theme:
FixTeam
Theme Slug:
fixteam
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

FlashMart

Theme:
FlashMart
Theme Slug:
flashmart
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Fleur

Theme:
Fleur
Theme Slug:
fleur
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Foodie

Theme:
Foodie
Theme Slug:
foodie
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Gamezone

Theme:
Gamezone
Theme Slug:
gamezone
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Gecko

Theme:
Gecko
Theme Slug:
gecko
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Global Logistics

Theme:
Global Logistics
Theme Slug:
globallogistics
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Good Energy

Theme:
Good Energy
Theme Slug:
goodenergy
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

GoTravel

Theme:
GoTravel
Theme Slug:
gotravel
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Grand News

Theme:
Grand News
Theme Slug:
grandnews
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Great Lotus

Theme:
Great Lotus
Theme Slug:
great-lotus
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Green Planet

Theme:
Green Planet
Theme Slug:
green-planet
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Green Thumb

Theme:
Green Thumb
Theme Slug:
greenthumb
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Gridiron

Theme:
Gridiron
Theme Slug:
gridiron
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Grit

Theme:
Grit
Theme Slug:
grit
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Guff

Theme:
Guff
Theme Slug:
guff
Vulnerability:
Broken Access Control
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Happy Baby

Theme:
Happy Baby
Theme Slug:
happy-baby
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Healer – Doctor, Clinic & Medical WordPress Theme

Theme:
Healer – Doctor, Clinic & Medical WordPress Theme
Theme Slug:
healer
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

Helion

Theme:
Helion
Theme Slug:
helion
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Helvig

Theme:
Helvig
Theme Slug:
helvig
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Holmes

Theme:
Holmes
Theme Slug:
holmes
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Honor

Theme:
Honor
Theme Slug:
honor
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Horizon

Theme:
Horizon
Theme Slug:
horizon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Humanum

Theme:
Humanum
Theme Slug:
humanum
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Innovio

Theme:
Innovio
Theme Slug:
innovio
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Invetex

Theme:
Invetex
Theme Slug:
invetex
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Justicia

Theme:
Justicia
Theme Slug:
justicia
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Justitia

Theme:
Justitia
Theme Slug:
justitia
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Kayon

Theme:
Kayon
Theme Slug:
kayon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Kingler

Theme:
Kingler
Theme Slug:
kingler
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

Kratz

Theme:
Kratz
Theme Slug:
kratz
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Law Office

Theme:
Law Office
Theme Slug:
law-office
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.
Theme:
Legal Stone
Theme Slug:
legal-stone
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Legrand

Theme:
Legrand
Theme Slug:
legrand
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Le Truffe

Theme:
Le Truffe
Theme Slug:
letruffe
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Lingvico

Theme:
Lingvico
Theme Slug:
lingvico
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Listify

Theme:
Listify
Theme Slug:
listify
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Little Birdies

Theme:
Little Birdies
Theme Slug:
little-birdies
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Luxury Wine

Theme:
Luxury Wine
Theme Slug:
luxury-wine
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Mahogany

Theme:
Mahogany
Theme Slug:
mahogany
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Malgré

Theme:
Malgré
Theme Slug:
malgre
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Mandala

Theme:
Mandala
Theme Slug:
mandala
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Manoir

Theme:
Manoir
Theme Slug:
manoir
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Marcell

Theme:
Marcell
Theme Slug:
marcell
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Marra

Theme:
Marra
Theme Slug:
marra
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Maxify

Theme:
Maxify
Theme Slug:
maxify
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

MCKinney’s Politics

Theme:
MCKinney’s Politics
Theme Slug:
mckinney-politics
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Meals & Wheels

Theme:
Meals & Wheels
Theme Slug:
meals-wheels
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

MediCenter – Health Medical Clinic

Theme:
MediCenter – Health Medical Clinic
Theme Slug:
medicenter
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Metro

Theme:
Metro
Theme Slug:
metro
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Metro

Theme:
Metro
Theme Slug:
metro
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Midi

Theme:
Midi
Theme Slug:
midi
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

MoneyFlow

Theme:
MoneyFlow
Theme Slug:
moneyflow
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Motorix

Theme:
Motorix
Theme Slug:
motorix
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Musico

Theme:
Musico
Theme Slug:
musico
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Muzicon

Theme:
Muzicon
Theme Slug:
muzicon
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

N7 | Golf Club Sports & Events

Theme:
N7 | Golf Club Sports & Events
Theme Slug:
n7-golf-club
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Notarius

Theme:
Notarius
Theme Slug:
notarius
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Nuts

Theme:
Nuts
Theme Slug:
nuts
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Overton

Theme:
Overton
Theme Slug:
overton
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Ozisti

Theme:
Ozisti
Theme Slug:
ozisti
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Peter Mason

Theme:
Peter Mason
Theme Slug:
petermason
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Photography

Theme:
Photography
Theme Slug:
photography
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Pizza House

Theme:
Pizza House
Theme Slug:
pizzahouse
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

Playa

Theme:
Playa
Theme Slug:
playa
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Police Department

Theme:
Police Department
Theme Slug:
police-department
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Porto

Theme:
Porto
Theme Slug:
porto
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Printy

Theme:
Printy
Theme Slug:
printy
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Progress

Theme:
Progress
Theme Slug:
progress
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Quantum

Theme:
Quantum
Theme Slug:
quantum
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Quanzo

Theme:
Quanzo
Theme Slug:
quanzo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Ratatouille

Theme:
Ratatouille
Theme Slug:
ratatouille
Vulnerability:
Server Side Request Forgery (SSRF)
Patched in Version:
No Fix
Severity Score:
Medium
The vulnerability has not been patched. You should switch themes.

RexCoin

Theme:
RexCoin
Theme Slug:
rexcoin
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Rhythmo

Theme:
Rhythmo
Theme Slug:
rhythmo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Run Gran

Theme:
Run Gran
Theme Slug:
run-gran
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Save Life

Theme:
Save Life
Theme Slug:
save-life
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Scientia

Theme:
Scientia
Theme Slug:
scientia
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

SetSail

Theme:
SetSail
Theme Slug:
setsail
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Shaha

Theme:
Shaha
Theme Slug:
shaha
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

ShiftCV

Theme:
ShiftCV
Theme Slug:
shift-cv
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

smart SEO

Theme:
smart SEO
Theme Slug:
smartSEO
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Sounder

Theme:
Sounder
Theme Slug:
sounder
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Stargaze

Theme:
Stargaze
Theme Slug:
stargaze
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Starto

Theme:
Starto
Theme Slug:
starto
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

S.King

Theme:
S.King
Theme Slug:
stephanie-king
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Sweet Jane

Theme:
Sweet Jane
Theme Slug:
sweetjane
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tediss

Theme:
Tediss
Theme Slug:
tediss
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tennis Club

Theme:
Tennis Club
Theme Slug:
tennis-sportclub
Vulnerability:
PHP Object Injection
Patched in Version:
No Fix
Severity Score:
Critical
The vulnerability has not been patched. You should switch themes.

The Mounty

Theme:
The Mounty
Theme Slug:
the-mounty
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

The Qlean

Theme:
The Qlean
Theme Slug:
the-qlean
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tiger Claw

Theme:
Tiger Claw
Theme Slug:
tiger-claw
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tooth Fairy

Theme:
Tooth Fairy
Theme Slug:
tooth-fairy
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

TopFit – Fitness and Gym WordPress Theme

Theme:
TopFit – Fitness and Gym WordPress Theme
Theme Slug:
topfit
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

TopScorer – Sports WordPress Theme

Theme:
TopScorer – Sports WordPress Theme
Theme Slug:
topscorer
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Translogic

Theme:
Translogic
Theme Slug:
translogic
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tribe

Theme:
Tribe
Theme Slug:
tribe
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Tuning

Theme:
Tuning
Theme Slug:
tuning
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

UDesign

Theme:
UDesign
Theme Slug:
u-design
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Vapester

Theme:
Vapester
Theme Slug:
vapester
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Veil

Theme:
Veil
Theme Slug:
veil
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Verdure

Theme:
Verdure
Theme Slug:
verdure
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Verse

Theme:
Verse
Theme Slug:
verse
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Victo

Theme:
Victo
Theme Slug:
victo
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Vixus

Theme:
Vixus
Theme Slug:
vixus
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Wabi-Sabi

Theme:
Wabi-Sabi
Theme Slug:
wabi-sabi
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

WealthCo

Theme:
WealthCo
Theme Slug:
wealthco
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Welldone

Theme:
Welldone
Theme Slug:
welldone
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

M.Williamson

Theme:
M.Williamson
Theme Slug:
williamson
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Windsor

Theme:
Windsor
Theme Slug:
windsor
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Wolmart

Theme:
Wolmart
Theme Slug:
wolmart
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Woopy

Theme:
Woopy
Theme Slug:
woopy
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Yacht Rental

Theme:
Yacht Rental
Theme Slug:
yacht-rental
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Yottis

Theme:
Yottis
Theme Slug:
yottis
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Yungen

Theme:
Yungen
Theme Slug:
yungen
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Zentrum

Theme:
Zentrum
Theme Slug:
zentrum
Vulnerability:
Local File Inclusion
Patched in Version:
No Fix
Severity Score:
High
The vulnerability has not been patched. You should switch themes.

Blocksy

Theme:
Blocksy
Theme Slug:
blocksy
Downloads
6,306,227
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
2.1.31
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 2.1.31.

Automotive Car Dealership Business

Theme:
Automotive Car Dealership Business
Theme Slug:
automotive
Vulnerability:
Cross Site Scripting (XSS)
Patched in Version:
13.4.2
Severity Score:
Medium
The vulnerability has been patched, so you should update to version 13.4.2.

Listee

Theme:
Listee
Theme Slug:
listee
Vulnerability:
Privilege Escalation
Patched in Version:
1.1.7
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 1.1.7.

Molla

Theme:
Molla
Theme Slug:
molla
Vulnerability:
Local File Inclusion
Patched in Version:
1.5.17
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.5.17.

Sweet Date

Theme:
Sweet Date
Theme Slug:
sweetdate
Vulnerability:
PHP Object Injection
Patched in Version:
4.0.1
Severity Score:
Critical
The vulnerability has been patched, so you should update to version 4.0.1.

The Issue

Theme:
The Issue
Theme Slug:
theissue
Vulnerability:
Local File Inclusion
Patched in Version:
1.6.12
Severity Score:
High
The vulnerability has been patched, so you should update to version 1.6.12.

Solid Security is part of Solid Suite — The best foundation for WordPress websites.

Every WordPress site needs security, backups, and management tools. That’s Solid Suite — an integrated bundle of three plugins: Solid Security, Solid Backups, and Solid Central. You also get access to Solid Academy’s learning resources for WordPress professionals. Build your next WordPress website on a solid foundation with Solid Suite!

Get Solid Security