Avada (Fusion) Builder

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in Avada (Fusion) Builder 3.11.12

    Fixed

    The Avada (Fusion) Builder plugin for WordPress has a security issue that can expose sensitive information. This vulnerability exists in all versions up to 3.11.12 and is caused by the handle_clone_p...

    Read More
  • Input validation vulnerability in Avada (Fusion) Builder 3.11.11

    Fixed

    The Avada Builder plugin for WordPress has a security issue that allows attackers to inject harmful code into web pages. This can happen because the plugin does not properly check and protect user in...

    Read More
  • Input validation vulnerability in Avada (Fusion) Builder 3.11.13

    Fixed

    The Avada Builder plugin for WordPress has a security issue where anyone can run shortcodes without proper validation. This means that attackers who are not authenticated can run any shortcode they w...

    Read More
  • Input validation vulnerability in Avada (Fusion) Builder 3.11.14

    Fixed

    The Avada (Fusion) Builder plugin for WordPress has a security issue that allows attackers to inject harmful web scripts. This can happen if the attacker has contributor-level access or higher. The p...

    Read More
  • Input validation vulnerability in Avada (Fusion) Builder 3.12.1

    Fixed

    The Avada (Fusion) Builder plugin, used on WordPress, can be hacked through a vulnerability known as Stored Cross-Site Scripting. This happens when the 'fusion_map' shortcode is used in versions 3.12...

    Read More
  • Input validation vulnerability in Fusion Builder 3.11.9

    Fixed

    The Avada plugin for WordPress, which allows users to build websites and create online stores, has a security vulnerability. This means that hackers can use a specific code in the plugin to insert ha...

    Read More
  • Input validation vulnerability in Fusion Builder 3.11.1

    Fixed

    The Fusion Builder plugin for WordPress is vulnerable to a type of attack called Cross-Site Request Forgery. This vulnerability affects versions of the plugin up to and including 3.11.1. The problem ...

    Read More
  • Input validation vulnerability in Fusion Builder 3.11.1

    Fixed

    The Fusion Builder plugin for WordPress is vulnerable to a security risk known as Reflected Cross-Site Scripting. This security risk makes it possible for unauthenticated attackers to inject maliciou...

    Read More
  • Access violation vulnerability in Fusion Builder 3.11.1

    Fixed

    The Fusion Builder plugin for WordPress has a security vulnerability that could allow someone with an account on the WordPress site to make unauthorized changes to data. This vulnerability affects ve...

    Read More
  • Input validation vulnerability in Fusion Builder 3.11.1

    Fixed

    The Fusion Builder plugin for WordPress is vulnerable to a type of attack called SQL Injection in versions up to 3.11.1. This type of attack happens when a user supplies a parameter without it being ...

    Read More
  • Input validation vulnerability in Fusion Builder 3.6.2

    Fixed

    The Fusion Builder plugin and Avada theme

    Read More