Medium 6.4
2025-09-24< 7.7.0
Themify Builder <= 7.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting
Minimum safe version
7.7.0
Update to 7.7.0 or later to address 11 fixable vulnerabilities
Themify Builder <= 7.6.9 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2025-49396
CVE-2024-13319
CVE-2024-56216
CVE-2024-52423
WordPress Themify Builder Plugin <= 7.6.2 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-7836
CVE-2024-3032
CVE-2024-24872
Themify Builder < 5.3.2 - Reflected Cross-Site Scripting
Themify Builder <= 5.3.1 - Reflected Cross-Site Scripting