Pagelines develops WordPress themes and platform products focused on website design and page-building functionality, with its vulnerability footprint centered on the Pagelines theme and platform offerings. The observed weaknesses cluster around web-application access controls, specifically cross-site request forgery and missing authorization checks that reflect the authentication and state-management demands of interactive design-editing interfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pagelines over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-10143CRITICAL The Platform theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the *_ajax_save_optio | Jul 25, 2025 | 9.8 | 43 | NO | YES |
CVE-2016-10945HIGH The PageLines theme 1.1.4 for WordPress has wp-admin/admin-post.php?page=pagelines CSRF. | Sep 13, 2019 | 8.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pagelines.
Media articles that mention a CVE ID that affects a product developed by Pagelines — matched by CVE ID, not by vendor name.