Known Vulnerabilities for products from Elegantthemes
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Elegantthemes".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-5533 json | The Divi theme for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.25.1 due to... | Not Provided | 2024-06-18 | 2026-04-08 |
| CVE-2023-6744 json | The Divi theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'et_pb_text' shortcode in all vers... | Not Provided | 2023-12-23 | 2026-04-08 |
| CVE-2016-11004 json | The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation. | 8.8 - HIGH | 2019-09-20 | 2019-09-20 |
| CVE-2016-11003 json | The Elegant Themes Bloom plugin before 1.1.1 for WordPress has privilege escalation. | 8.8 - HIGH | 2019-09-20 | 2019-09-20 |
| CVE-2016-11002 json | The Elegant Themes Extra theme before 1.2.4 for WordPress has privilege escalation. | 8.8 - HIGH | 2019-09-20 | 2019-09-20 |
| CVE-2015-1579 json | Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary fi... | Not Provided | 2015-02-11 | 2026-05-06 |