WP Royal Themes develops a compact line of WordPress theme products including Ashe and Royal Core that serve website customization and design needs. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wp Royal Themes over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-12129HIGH The Royal Core plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'royal_restore | Jan 30, 2025 | 8.8 | 24 | NO | NO |
CVE-2024-9777MEDIUM The Ashe theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and incl | Nov 19, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wp Royal Themes.
Media articles that mention a CVE ID that affects a product developed by Wp Royal Themes — matched by CVE ID, not by vendor name.