Themify Builder

Themify Builder is a powerful and easy-to-use page designer and builder for WordPress, allowing users to design any layout they can imagine with its drag-and-drop interface. It is modular in design, SEO-friendly, translatable, and supports multi-site networks. The Builder includes all modules, custom styling, undo/redo, copy/paste, import/export, and row/column layout pre-set grids. It works on any post type and plays well with all major plugins.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Themify Builder 7.6.9

    Fixed

    The Themify Builder plugin for WordPress has a security issue where malicious code can be injected into pages. This can be done by someone with Contributor-level access or higher, and can cause the i...

    Read More
  • Access violation vulnerability in Themify Builder 7.6.7

    Fixed

    The Themify Builder plugin for WordPress has a security issue that allows unauthorized people to access it. This is because it lacks a way to check if someone is allowed to use a certain function. Th...

    Read More
  • Input validation vulnerability in Themify Builder 7.6.5

    Fixed

    The Themify Builder plugin for WordPress has a security issue called Reflected Cross-Site Scripting. This is because it does not properly protect the URL in all versions up to 7.6.5, which allows att...

    Read More
  • Input validation vulnerability in Themify Builder 7.6.3

    Fixed

    The Themify Builder plugin for WordPress has a security issue in versions 7.6.3 and below. This means that people who have contributor-level access or higher can add and run any files on the server, ...

    Read More
  • Input validation vulnerability in Themify Builder 7.6.5

    Fixed

    The Themify Builder plugin for WordPress has a security issue in versions 7.6.5 and below. This allows attackers with contributor-level access or higher to add harmful scripts to pages, which will th...

    Read More
  • Input validation vulnerability in Themify Builder 7.6.2

    Fixed

    The Themify Builder plugin for WordPress has a security issue called Reflected Cross-Site Scripting. This happens because the plugin uses a function called add_query_arg without protecting the URL. T...

    Read More
  • Access violation vulnerability in Themify Builder 7.6.1

    Fixed

    The Themify Builder plugin for WordPress has a security issue that allows unauthorized copying of posts. This problem affects all versions up to and including 7.6.1. It means that someone who has Con...

    Read More
  • Input validation vulnerability in Themify Builder 7.5.7

    Fixed

    The Themify Builder plugin for WordPress has a security vulnerability in all versions up to 7.5.7. This is because the redirect url given in the 'tb_redirect_fail' parameter is not properly checked. ...

    Read More
  • Input validation vulnerability in Themify Builder 7.0.5

    Fixed

    The Themify Builder plugin for WordPress has a security issue in versions up to 7.0.5. This is because the cache_menu() function does not properly check for a specific security code, making it possib...

    Read More
  • Input validation vulnerability in Themify Builder 5.3.1

    Fixed

    The Themify Builder plugin for WordPress has a security vulnerability that allows unauthenticated attackers to inject malicious code into webpages if they can convince a user to click on a link. This...

    Read More