Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rarathemes

First CVE: Apr 29, 2022Active for: 4 yearsTotal CVEs: 19
13.3
VTI Score
Low

Rarathemes develops a focused portfolio of WordPress themes oriented toward small business, education, and landing-page use cases, including products such as Benevolent, Book Landing Page, and Business One Page. The vendor's vulnerabilities cluster around web-application input-handling and authorization gaps characteristic of theme development, with recurring weaknesses in cross-site scripting, cross-site request forgery, missing authorization checks, and unrestricted file uploads. Current severity, exploitation, and exposure metrics are shown alongside this summary.

FAUCET AI Generated
19
Total CVEs
More Total CVEs than 96% of tracked vendors
0.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 2% of tracked vendors
6.4
Avg CVSS Score
Higher Avg CVSS Score than 39% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Rarathemes over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 29, 2022
4 years ago
Most Recent CVE
Jan 21, 2025
549 days ago

Products(19 total)

Top CVEs

Signals from CVEs in this vendor scope (19 CVEs).

19 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-37450HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Benevolent benevolent allows Cross Site Request Forgery.This issue affects Benevolent: from n/a through <= 1.3.4.
Jan 2, 20258.824NONO
CVE-2024-37230HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Book Landing Page.This issue affects Book Landing Page: from n/a through 1.2.3.
Jun 21, 20248.824NONO
CVE-2024-37937HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Rara Business rara-business allows Cross Site Request Forgery.This issue affects Rara Business: from n/a through <= 1.2
Jan 2, 20258.823NONO
CVE-2024-37508HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Construction Landing Page construction-landing-page allows Cross Site Request Forgery.This issue affects Construction L
Jan 2, 20258.823NONO
CVE-2024-37503HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Lawyer Landing Page lawyer-landing-page allows Cross Site Request Forgery.This issue affects Lawyer Landing Page: from
Jan 2, 20258.823NONO
CVE-2024-37451HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Travel Agency travel-agency allows Cross Site Request Forgery.This issue affects Travel Agency: from n/a through <= 1.4
Jan 2, 20258.823NONO
CVE-2024-37435HIGH
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Perfect Portfolio perfect-portfolio allows Cross Site Request Forgery.This issue affects Perfect Portfolio: from n/a th
Jan 2, 20258.823NONO
CVE-2022-29451HIGH
Cross-Site Request Forgery (CSRF) leading to Arbitrary File Upload vulnerability in Rara One Click Demo Import plugin <= 1.2.9 on WordPress allows attackers to trick logged-in admi
Apr 29, 20228.822NONO
CVE-2025-23998MEDIUM
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in raratheme UltraLight the-ultralight allows Reflected XSS.This issue affects Ul
Jan 21, 20256.118NONO
CVE-2023-24404MEDIUM
Reflected Cross-Site Scripting (XSS) vulnerability in VryaSage Marketing Performance plugin <= 2.0.0 versions.
Apr 23, 20236.117NONO
View all 19 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products19 CVEs
58%
42%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network19 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None0 (0.0%)
Unknown0 (0.0%)
Required19 (100.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None19 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (19 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rarathemes.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rarathemes — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rarathemes's Products

View all 1 CNAs →

Top CWEs