High 8.5 Unfixed
2026-01-08≤ 3.3.6
CVE-2025-22728
Minimum safe version
3.3.3
Update to 3.3.3 or later to address 3 fixable vulnerabilities
CVE-2025-22728
Workreap <= 3.3.1 - Authentication Bypass via 'workreap_verify_user_account'
WordPress Workreap (theme's plugin) Plugin <= 3.3.2 is vulnerable to Arbitrary File Upload
CVE-2024-13446