qodeinteractive records
37 published records for vendor qodeinteractive.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 64.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')13
- CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')13
- CWE-35 Path Traversal: '.../...//'4
- CWE-639 Authorization Bypass Through User-Controlled Key2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-352 Cross-Site Request Forgery (CSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAll records
37 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2025-39494No exploit | WordPress Wilmër theme < 3.4.2 - Local File Inclusion Vulnerabilityqodeinteractive · wilmer · CWE-98 | Critical9.8 | — | 0.7% | May 23, 2025 |
39Monitor | CVE-2025-49295No exploit | WordPress MediClinic theme <= 2.1 - Local File Inclusion Vulnerabilityqodeinteractive · mediclinic · CWE-35 | Critical9.8 | — | 0.6% | Jun 9, 2025 |
39Monitor | CVE-2025-49297No exploit | WordPress Grill and Chow theme <= 1.6 - Local File Inclusion Vulnerabilityqodeinteractive · grill and chow · CWE-35 | Critical9.8 | — | 0.6% | Jun 9, 2025 |
39Monitor | CVE-2025-49296No exploit | WordPress GrandPrix theme <= 1.6 - Local File Inclusion Vulnerabilityqodeinteractive · grandprix · CWE-35 | Critical9.8 | — | 0.6% | Jun 9, 2025 |
35Monitor | CVE-2023-47840Proof of concept | WordPress Qode Essential Addons Plugin <= 1.5.2 is vulnerable to Remote Code Execution (RCE)qodeinteractive · qode essential addons · CWE-94 | High8.8 | — | 1.4% | Dec 29, 2023 |
35Monitor | CVE-2024-50457No exploit | WordPress Qode Essential Addons plugin <= 1.6.3 - Local File Inclusion vulnerabilityqodeinteractive · qode essential addons · CWE-98 | High8.8 | — | 0.6% | Oct 28, 2024 |
35Monitor | CVE-2024-49690No exploit | WordPress Qi Blocks plugin <= 1.3.2 - Local File Inclusion vulnerabilityqodeinteractive · qi blocks · CWE-98 | High8.8 | — | 0.6% | Oct 23, 2024 |
35Monitor | CVE-2023-47679No exploit | WordPress Qi Addons For Elementor plugin <= 1.6.3 - Local File Inclusion vulnerabilityqodeinteractive · qi addons for elementor · CWE-22 | High8.8 | — | 0.5% | May 17, 2024 |
35Monitor | CVE-2025-67515No exploit | WordPress Wilmër theme < 3.5 - Local File Inclusion vulnerabilityqodeinteractive · wilmer · CWE-98 | High8.8 | — | 0.4% | Dec 9, 2025 |
32Monitor | CVE-2025-39490No exploit | WordPress Backpack Traveler theme <= 2.10.2 - Local File Inclusion Vulnerabilityqodeinteractive · backpack traveler · CWE-98 | High8.1 | — | 0.8% | May 23, 2025 |
32Monitor | CVE-2025-39458No exploit | WordPress Foton theme <= 2.5.2 - Local File Inclusion vulnerabilityqodeinteractive · foton · CWE-98 | High8.1 | — | 0.7% | May 19, 2025 |
32Monitor | CVE-2025-39466No exploit | WordPress Dør theme <= 2.4 - Local File Inclusion Vulnerabilityqodeinteractive · dor · CWE-98 | High8.1 | — | 0.6% | Nov 6, 2025 |
32Monitor | CVE-2025-39467No exploit | WordPress Wanderland theme <= 1.7.1 - Local File Inclusion Vulnerabilityqodeinteractive · wanderland · CWE-35 | High8.1 | — | 0.6% | Nov 6, 2025 |
32Monitor | CVE-2025-67934No exploit | WordPress Wellspring theme < 2.8 - Local File Inclusion vulnerabilityqodeinteractive · wellspring · CWE-98 | High8.1 | — | 0.5% | Jan 8, 2026 |
32Monitor | CVE-2025-67935No exploit | WordPress Optimize theme < 2.4 - Local File Inclusion vulnerabilityqodeinteractive · optimize · CWE-98 | High8.1 | — | 0.5% | Jan 8, 2026 |
32Monitor | CVE-2025-67936No exploit | WordPress Curly theme < 3.3 - Local File Inclusion vulnerabilityqodeinteractive · curly · CWE-98 | High8.1 | — | 0.5% | Jan 8, 2026 |
32Monitor | CVE-2025-67937No exploit | WordPress Hendon theme < 1.7 - Local File Inclusion vulnerabilityqodeinteractive · hendon · CWE-98 | High8.1 | — | 0.5% | Jan 8, 2026 |
32Monitor | CVE-2025-69034No exploit | WordPress Lekker theme <= 1.8 - Local File Inclusion vulnerabilityqodeinteractive · lekker · CWE-98 | High8.1 | — | 0.4% | Dec 30, 2025 |
30Monitor | CVE-2024-4887No exploit | Qi Addons For Elementor <= 1.7.2 - Authenticated (Contributor+) Local File Inclusionqodeinteractive · qi addons for elementor · CWE-98 | High7.5 | — | 0.6% | Jun 7, 2024 |
24Monitor | CVE-2017-13138No exploit | DOM based Cross-site scripting (XSS) vulnerability in the Bridge theme before 11.2 for WordPress allows remote attackers to inject arbitraryqodeinteractive · bridge · CWE-79 | Medium6.1 | — | 1.2% | Aug 23, 2017 |
24Monitor | CVE-2023-40333No exploit | WordPress Bridge Core Plugin <= 3.0.9 is vulnerable to Cross Site Scripting (XSS)qodeinteractive · bridge core · CWE-79 | Medium6.1 | — | 0.4% | Sep 27, 2023 |
21Monitor | CVE-2024-0826No exploit | Qi Addons For Elementor <= 1.6.7 - Authenticated (Contributor+) Stored Cross-Site Scriptingqodeinteractive · qi addons for elementor · CWE-79 | Medium5.4 | — | 0.6% | Apr 9, 2024 |
21Monitor | CVE-2023-47680No exploit | WordPress Qi Addons For Elementor Plugin <= 1.6.3 is vulnerable to Cross Site Scripting (XSS)qodeinteractive · qi addons for elementor · CWE-79 | Medium5.4 | — | 0.4% | Nov 13, 2023 |
21Monitor | CVE-2024-13699No exploit | Qi Addons For Elementor <= 1.8.7 - Authenticated (Contributor+) Stored Cross-Site Scriptingqodeinteractive · qi addons for elementor · CWE-79 | Medium5.4 | — | 0.4% | Feb 4, 2025 |
21Monitor | CVE-2024-4364No exploit | Qi Addons For Elementor <= 1.7.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Widgetqodeinteractive · qi addons for elementor · CWE-79 | Medium5.4 | — | 0.3% | Jun 6, 2024 |
- CVE-2025-3949439Monitor
WordPress Wilmër theme < 3.4.2 - Local File Inclusion Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%qodeinteractive · wilmerMay 23, 2025
- CVE-2025-4929539Monitor
WordPress MediClinic theme <= 2.1 - Local File Inclusion Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%qodeinteractive · mediclinicJun 9, 2025
- CVE-2025-4929739Monitor
WordPress Grill and Chow theme <= 1.6 - Local File Inclusion Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%qodeinteractive · grill and chowJun 9, 2025
- CVE-2025-4929639Monitor
WordPress GrandPrix theme <= 1.6 - Local File Inclusion Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%qodeinteractive · grandprixJun 9, 2025
- CVE-2023-4784035Monitor
WordPress Qode Essential Addons Plugin <= 1.5.2 is vulnerable to Remote Code Execution (RCE)
HighCVSS 8.8Proof of conceptEPSS 1%qodeinteractive · qode essential addonsDec 29, 2023
- CVE-2024-5045735Monitor
WordPress Qode Essential Addons plugin <= 1.6.3 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 1%qodeinteractive · qode essential addonsOct 28, 2024
- CVE-2024-4969035Monitor
WordPress Qi Blocks plugin <= 1.3.2 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 1%qodeinteractive · qi blocksOct 23, 2024
- CVE-2023-4767935Monitor
WordPress Qi Addons For Elementor plugin <= 1.6.3 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%qodeinteractive · qi addons for elementorMay 17, 2024
- CVE-2025-6751535Monitor
WordPress Wilmër theme < 3.5 - Local File Inclusion vulnerability
HighCVSS 8.8No exploitEPSS 0%qodeinteractive · wilmerDec 9, 2025
- CVE-2025-3949032Monitor
WordPress Backpack Traveler theme <= 2.10.2 - Local File Inclusion Vulnerability
HighCVSS 8.1No exploitEPSS 1%qodeinteractive · backpack travelerMay 23, 2025
- CVE-2025-3945832Monitor
WordPress Foton theme <= 2.5.2 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 1%qodeinteractive · fotonMay 19, 2025
- CVE-2025-3946632Monitor
WordPress Dør theme <= 2.4 - Local File Inclusion Vulnerability
HighCVSS 8.1No exploitEPSS 1%qodeinteractive · dorNov 6, 2025
- CVE-2025-3946732Monitor
WordPress Wanderland theme <= 1.7.1 - Local File Inclusion Vulnerability
HighCVSS 8.1No exploitEPSS 1%qodeinteractive · wanderlandNov 6, 2025
- CVE-2025-6793432Monitor
WordPress Wellspring theme < 2.8 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 0%qodeinteractive · wellspringJan 8, 2026
- CVE-2025-6793532Monitor
WordPress Optimize theme < 2.4 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 0%qodeinteractive · optimizeJan 8, 2026
- CVE-2025-6793632Monitor
WordPress Curly theme < 3.3 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 0%qodeinteractive · curlyJan 8, 2026
- CVE-2025-6793732Monitor
WordPress Hendon theme < 1.7 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 0%qodeinteractive · hendonJan 8, 2026
- CVE-2025-6903432Monitor
WordPress Lekker theme <= 1.8 - Local File Inclusion vulnerability
HighCVSS 8.1No exploitEPSS 0%qodeinteractive · lekkerDec 30, 2025
- CVE-2024-488730Monitor
Qi Addons For Elementor <= 1.7.2 - Authenticated (Contributor+) Local File Inclusion
HighCVSS 7.5No exploitEPSS 1%qodeinteractive · qi addons for elementorJun 7, 2024
- CVE-2017-1313824Monitor
DOM based Cross-site scripting (XSS) vulnerability in the Bridge theme before 11.2 for WordPress allows remote attackers to inject arbitrary
MediumCVSS 6.1No exploitEPSS 1%qodeinteractive · bridgeAug 23, 2017
- CVE-2023-4033324Monitor
WordPress Bridge Core Plugin <= 3.0.9 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 6.1No exploitEPSS 0%qodeinteractive · bridge coreSep 27, 2023
- CVE-2024-082621Monitor
Qi Addons For Elementor <= 1.6.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 1%qodeinteractive · qi addons for elementorApr 9, 2024
- CVE-2023-4768021Monitor
WordPress Qi Addons For Elementor Plugin <= 1.6.3 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%qodeinteractive · qi addons for elementorNov 13, 2023
- CVE-2024-1369921Monitor
Qi Addons For Elementor <= 1.8.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 0%qodeinteractive · qi addons for elementorFeb 4, 2025
- CVE-2024-436421Monitor
Qi Addons For Elementor <= 1.7.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Widget
MediumCVSS 5.4No exploitEPSS 0%qodeinteractive · qi addons for elementorJun 6, 2024