Medium 6.4
2025-10-25< 2.0.9
WordPress Listeo Theme <= 2.0.8 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
2.0.9
Update to 2.0.9 or later to address 6 fixable vulnerabilities
WordPress Listeo Theme <= 2.0.8 is vulnerable to Cross Site Scripting (XSS)
WordPress Listeo premium theme <= 1.6.07 - Authenticated Multiple Insecure Direct Object References (IDOR) vulnerabilities
WordPress Listeo premium theme <= 1.6.07 - Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities
WordPress Listeo premium theme <= 1.6.07 - Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability
CVE-2021-24318
CVE-2021-24317