Medium 6.4
2026-01-10< 2.17.14
CVE-2025-12379
Minimum safe version
2.17.14
Update to 2.17.14 or later to address 19 fixable vulnerabilities
CVE-2025-12379
CVE-2025-13215
CVE-2025-69016
CVE-2025-63071
CVE-2024-50500
CVE-2024-12588
Shortcodes and extra features for Phlox theme <= 2.17.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via aux_contact_box and aux_gmaps Shortcodes
WordPress Shortcodes and extra features for Phlox theme Plugin <= 2.16.3 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-7064
CVE-2024-1396
CVE-2024-3341
CVE-2024-1348
CVE-2024-1533
CVE-2024-1357
CVE-2024-3517
CVE-2024-31099
CVE-2023-50368
CVE-2023-37888
Shortcodes and extra features for Phlox theme <= 2.9.8 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2022-3359
CVE-2022-1910