Cpothemes Cpothemes

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in any Cpothemes product.

RSS Feeds for Cpothemes security vulnerabilities

Create a CVE RSS feed including security vulnerabilities found in Cpothemes products with stack.watch. Just hit watch, then grab your custom RSS feed url.

Products by Cpothemes Sorted by Most Security Vulnerabilities since 2018

Cpothemes Allegiant3 vulnerabilities

Cpothemes Affluent2 vulnerabilities

Cpothemes Brilliance2 vulnerabilities

Cpothemes Transcend2 vulnerabilities

By the Year

In 2026 there have been 0 vulnerabilities in Cpothemes. Cpothemes did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 1 5.40
2023 2 8.15

It may take a day or so for new Cpothemes vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Cpothemes Security Vulnerabilities

CVE Date Vulnerability Products
CVE-2024-43329 Aug 18, 2024
WP Chill Allegiant Stored XSS in Allegiant 1.2.7 (CVE202443329) Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Chill Allegiant allegiant allows Stored XSS.This issue affects Allegiant: from n/a through 1.2.7.
Allegiant
CVE-2020-36721 Jun 07, 2023
WP Themes <=1.3.1 Unauth Plugin Act/Deact (CVE-2020-36721) The Brilliance <= 1.2.7, Activello <= 1.4.0, and Newspaper X <= 1.3.1 themes for WordPress are vulnerable to Plugin Activation/Deactivation. This is due to the 'activello_activate_plugin' and 'activello_deactivate_plugin' functions in the 'inc/welcome-screen/class-activello-welcome.php' file missing capability and security checks/nonces. This makes it possible for unauthenticated attackers to activate and deactivate arbitrary plugins installed on a vulnerable site.
Affluent
Transcend
Brilliance
And others...
CVE-2020-36708 Jun 07, 2023
WordPress Themes <=1.3.1 Function Injection via epsilon_framework_ajax_action The following themes for WordPress are vulnerable to Function Injections in versions up to and including Shapely <= 1.2.7, NewsMag <= 2.4.1, Activello <= 1.4.0, Illdy <= 2.1.4, Allegiant <= 1.2.2, Newspaper X <= 1.3.1, Pixova Lite <= 2.0.5, Brilliance <= 1.2.7, MedZone Lite <= 1.2.4, Regina Lite <= 2.0.4, Transcend <= 1.1.8, Affluent <= 1.1.0, Bonkers <= 1.0.4, Antreas <= 1.0.2, Sparkling <= 2.4.8, and NatureMag Lite <= 1.0.4. This is due to epsilon_framework_ajax_action. This makes it possible for unauthenticated attackers to call functions and achieve remote code execution.
Affluent
Transcend
Brilliance
And others...
Built by Foundeo Inc., with data from the National Vulnerability Database (NVD). Privacy Policy. Use of this site is governed by the Legal Terms
Disclaimer
CONTENT ON THIS WEBSITE IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. Always check with your vendor for the most up to date, and accurate information.