Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

wpopal — Vulnerabilities & Security Advisories 15

Browse all 15 CVE security advisories affecting wpopal. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Wpopal is a WordPress theme provider focusing on multipurpose website templates for businesses and online stores. Historically, the themes have been vulnerable to multiple security issues including remote code execution, cross-site scripting, and privilege escalation vulnerabilities, with 15 CVEs recorded. Common weaknesses include insufficient input validation and improper access controls in theme options and page builder components. While no major public security incidents have been widely documented, the consistent pattern of vulnerabilities suggests potential risks for unpatched installations, particularly in environments with outdated theme versions or default configurations.

Found 2 results / 15 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2021-4388 Opal Estate <= 1.6.11 - Missing Authorization — Opal Estate CWE-862 4.3 Medium 2023-07-01
CVE-2021-4387 Opal Estate <= 1.6.11 - Cross-Site Request Forgery Bypass — Opal Estate CWE-352 4.3 Medium 2023-07-01

This page lists every published CVE security advisory associated with wpopal. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.