Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2025-64634
Missing Authorization vulnerability in ThemeFusion Avada avada allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Ava…
Avada
after 7.13.1
MEDIUM 5.4
CVE-2025-1665
The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes in all versions u…
Avada Builder
after 3.11.14
CRITICAL 9.8
CVE-2024-13346
The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and…
Avada
7.11.14+
CRITICAL 9.8
CVE-2024-13345
The Avada Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.11.13. This is due to t…
Avada Builder
3.11.14+
MEDIUM 5.4
CVE-2024-12477
The Avada Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including,…
Avada Builder
after 3.11.11
MEDIUM 5.4
CVE-2024-5628
The Avada | Website Builder For WordPress & eCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's fusion_butto…
Avada
7.11.9+
HIGH 8.8
CVE-2023-39312
Missing Authorization vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.
Avada
7.11.2+
HIGH 8.8
CVE-2023-39922
Missing Authorization vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.
Avada
7.11.2+
HIGH 7.2
CVE-2024-2344
The Avada theme for WordPress is vulnerable to SQL Injection via the 'entry' parameter in all versions up to, and including, 7.11.6 due to insufficie…
Avada
7.11.7+
MEDIUM 6.4
CVE-2024-2343
The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and i…
Avada
7.11.7+
MEDIUM 5.3
CVE-2024-2340EPSS 28%
The Avada theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.11.6 via the '/wp-content/uploa…
Avada
7.11.7+
MEDIUM 5.4
CVE-2024-2311
The Avada theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 7.11.6 d…
Avada
7.11.7+
HIGH 7.7
CVE-2023-39313
Server-Side Request Forgery (SSRF) vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.
Avada
7.11.2+
HIGH 8.8
CVE-2023-39307
Unrestricted Upload of File with Dangerous Type vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.
Avada
7.11.2+
MEDIUM 6.5
CVE-2024-1668
The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to Sensitive Information Exposure in versions up to and inc…
Avada
7.11.6+
HIGH 8.8
CVE-2024-1468
The Avada | Website Builder For WordPress & WooCommerce theme for WordPress is vulnerable to arbitrary file uploads due to missing file type validati…
Avada
7.11.5+
MEDIUM 5.4
CVE-2020-36711
The Avada theme for WordPress is vulnerable to Stored Cross-Site Scripting via the update_layout function in versions up to, and including, 6.2.3 due…
Avada
after 6.2.3
HIGH 8.8
CVE-2022-41996
Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Avada premium theme versions <= 7.8.1 on WordPress leading to arbitrary plugin install…
Avada
after 7.8.1
HIGH 8.8
CVE-2017-18607
The avada theme before 5.1.5 for WordPress has CSRF.
Avada
5.1.5+
MEDIUM 6.1
CVE-2017-18606
The avada theme before 5.1.5 for WordPress has stored XSS.
Avada
5.1.5+