Medium 6.5
2025-12-09< 12.9.0
CVE-2025-63073
Minimum safe version
12.9.2
Update to 12.9.2 or later to address 8 fixable vulnerabilities
CVE-2025-63073
CVE-2025-63074
CVE-2025-11897
WordPress The7 Theme <= 12.6.0 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-5451
The7 Premium Theme < 2.1.1 - Cross-Site Scripting (XSS)
CVE-2023-32123
CVE-2023-29100
The7 — Website and eCommerce Builder for WordPress <= 2.1.0 - Reflected Cross-Site Scripting