Stylemix
23 CVEs tracked since 2023. Since Jun 2023, none of them reached CISA KEV.
Stylemix CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-06 | 9 | 0 |
| 2023-07 | null or fewer | |
| 2023-08 | null or fewer | |
| 2023-09 | null or fewer | |
| 2023-10 | null or fewer | |
| 2023-11 | null or fewer | |
| 2023-12 | null or fewer | |
| 2024-01 | null or fewer | |
| 2024-02 | null or fewer | |
| 2024-03 | null or fewer | |
| 2024-04 | null or fewer | |
| 2024-05 | null or fewer | |
| 2024-06 | null or fewer | |
| 2024-07 | null or fewer | |
| 2024-08 | null or fewer | |
| 2024-09 | null or fewer | |
| 2024-10 | null or fewer | |
| 2024-11 | null or fewer | |
| 2024-12 | null or fewer | |
| 2025-01 | null or fewer | |
| 2025-02 | null or fewer | |
| 2025-03 | null or fewer | |
| 2025-04 | 14 | 0 |
Products
The products that kept showing up in Stylemix's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Stylemix.
- CVE-2026-16750Motors – Car Dealership & Classified Listings <= 1.4.120 - Missing Authorization to Unauthenticated Private/Draft/Password-Protected Listings Exposure5.3
- CVE-2026-19802Checkout Custom Fields Builder for WooCommerce <= 1.1.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation via 'plugin' Parameter4.3
- CVE-2026-78284WordPress MasterStudy LMS plugin <= 3.7.42 - Arbitrary File Deletion vulnerability8.6
- CVE-2026-73404WordPress MasterStudy LMS plugin <= 3.7.41 - Broken Access Control vulnerability6.5
- CVE-2026-68568WordPress MasterStudy LMS plugin <= 3.7.41 - Privilege Escalation vulnerability6.3
- CVE-2026-66693WordPress Motors plugin <= 1.4.113 - Broken Access Control vulnerability6.5
- CVE-2026-7753Cost Calculator Builder <= 3.6.17 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Disclosure6.5
- CVE-2026-5060MasterStudy LMS WordPress Plugin – for Online Courses and Education <= 3.7.14 - Insecure Direct Object Reference to Authenticated (Instructor+) Arbitrary Attachment Deletion6.5
- CVE-2026-27392WordPress uListing plugin <= 2.2.0 - Broken Access Control vulnerability4.3
- CVE-2026-27391WordPress uListing plugin <= 2.2.0 - Broken Access Control vulnerability5.4
- CVE-2026-10865Cost Calculator Builder <= 4.0.11 - Unauthenticated Sensitive Information Exposure of Payment Gateway Secret Keys5.3
- CVE-2026-13114Motors <= 1.4.112 - Unauthenticated Stored Cross-Site Scripting via Comment Content and User Biographical Info7.2
- CVE-2026-12435Motors <= 1.4.111 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Meta Modification via 'stm_mark_as_sold_car' Parameter4.3
- CVE-2026-57330WordPress MasterStudy LMS plugin <= 3.7.27 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2026-57640WordPress MasterStudy LMS plugin <= 3.7.30 - Broken Access Control vulnerability4.3
The record
- Peak rank
- #64 in Apr 2025
- Busiest month shown
- Apr 2025, 14 CVEs
- Months with a KEV entry
- 0 since Jun 2023
- Monthly snapshots
- 2 since 2023