CVE Tools

Vibethemes

18 CVEs tracked since 2024. Since Dec 2024, none of them reached CISA KEV.

Vibethemes CVEs per month

Dec 2024 to Dec 2024. Point at a month, or focus the strip and use the arrow keys.
Vibethemes CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-12180

Products

The products that kept showing up in Vibethemes's monthly top three, with their CVEs summed over those months.

  1. WordPress Learning Management System151 month
  2. Wplms151 month
  3. Vibebp31 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Vibethemes.

  1. CVE-2025-69097WordPress WPLMS plugin <= 1.9.9.5.4 - Arbitrary File Deletion vulnerability8.6
  2. CVE-2025-63035WordPress WPLMS plugin <= 1.9.9.5.4 - Cross Site Scripting (XSS) vulnerability6.5
  3. CVE-2025-53420WordPress WPLMS plugin <= 1.9.9.8 - Cross Site Scripting (XSS) vulnerability7.1
  4. CVE-2025-49925WordPress WPLMS plugin <= 1.9.9.7 - Broken Access Control vulnerability7.5
  5. CVE-2025-58668WordPress WPLMS theme <= 4.970 - Broken Access Control vulnerability4.3
  6. CVE-2015-10139WPLMS Learning Management System for WordPress, WordPress LMS <= 1.8.4.1 - Privilege Escalation8.8
  7. CVE-2025-32493WordPress BP Social Connect plugin <= 1.6.2 - Cross Site Scripting (XSS) Vulnerability5.9
  8. CVE-2024-56045WordPress WPLMS plugin < 1.9.9.5 - Unauthenticated Arbitrary Directory Deletion vulnerability9.3
  9. CVE-2024-56044WordPress WPLMS plugin <= 1.9.9 - Unauthenticated Arbitrary User Token Generation vulnerability9.8
  10. CVE-2024-56043WordPress WPLMS plugin <= 1.9.9 - Unauthenticated Privilege Escalation vulnerability9.8
  11. CVE-2024-56040WordPress VibeBP plugin <= 1.9.9.4.1 - Unauthenticated Privilege Escalation vulnerability9.8
  12. CVE-2024-56042WordPress WPLMS plugin < 1.9.9.5.3 - Unauthenticated SQL Injection vulnerability9.3
  13. CVE-2024-56041WordPress VibeBP plugin < 1.9.9.5.1 - SQL Injection vulnerability8.5
  14. CVE-2024-56039WordPress VibeBP plugin < 1.9.9.7.7 - Unauthenticated SQL Injection vulnerability9.3
  15. CVE-2024-56046WordPress WPLMS plugin <= 1.9.9 - Unauthenticated Arbitrary File Upload vulnerability10.0

The record

Peak rank
#37 in Dec 2024
Busiest month shown
Dec 2024, 18 CVEs
Months with a KEV entry
0 since Dec 2024
Monthly snapshots
1 since 2024
Vibethemes's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store