VYPR

Divi Torque Lite

by WordPress

CVEs (3)

  • CVE-2024-5892MedJun 12, 2024
    risk 0.42cvss 6.4epss 0.00

    The Divi Torque Lite – Divi Theme and Extra Theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘support_unfiltered_files_upload’ function in all versions up to, and including, 3.6.6 due to insufficient input sanitization and output escaping.…

  • CVE-2025-0353MedJan 29, 2025
    risk 0.35cvss 6.4epss 0.00

    The Divi Torque Lite – Best Divi Addon, Extensions, Modules & Social Modules plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in all versions up to, and including, 4.1.0 due to insufficient input sanitization and output escaping on user…

  • CVE-2026-4275HigJul 9, 2026
    risk 0.00cvss 8.8epss 0.00

    The Divi Torque Lite – Divi Theme, Divi Builder & Extra Theme plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.2.3. This is due to the use of '__return_true' as the permission_callback for the /install_plugin and…