Analogwp develops Style Kits, a WordPress-focused design and styling product, with reported vulnerabilities centered on cross-site request forgery in its web interface. This represents a compact vendor profile driven by application-layer request-handling considerations rather than a broad portfolio trend. Current CVE counts, exploitation status, and severity distribution are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Analogwp over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-65484MEDIUM Contributor Broken Access Control in Style Kits <= 2.6.5 versions. | Jul 23, 2026 | 6.3 | 27 | NO | NO |
CVE-2021-4401HIGH The Style Kits plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8.0. This is due to missing or incorrect nonce validation on the | Jul 1, 2023 | 8.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Analogwp.
Media articles that mention a CVE ID that affects a product developed by Analogwp — matched by CVE ID, not by vendor name.