Livemeshthemes maintains a focused portfolio of WordPress theme and page-builder plugins, with its vulnerability footprint centered on WPBakery Page Builder add-ons that are widely deployed in WordPress installations. The durable signal is application-layer input-handling weakness, specifically improper neutralization of user input in web page generation leading to cross-site scripting conditions.
The number and severity of CVEs published that impact products developed by Livemeshthemes over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-2079MEDIUM The WPBakery Page Builder Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'per_line_mobile' shortcode in all versions up to, a | Mar 13, 2024 | 5.4 | 16 | NO | NO |
CVE-2023-50370MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Livemesh WPBakery Page Builder Addons by Livemesh allows Stored XSS.This issue | Dec 14, 2023 | 5.4 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Livemeshthemes.
Media articles that mention a CVE ID that affects a product developed by Livemeshthemes — matched by CVE ID, not by vendor name.