Pricing
Case studies
Login
Start trial
Traveler
Shinetheme
Developer
N/A
Latest version
N/A
Downloads
N/A
Last updated
WordPress Theme
No VDP
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
2 present
23 patched
20 Mitigation rules
PHP Object Injection vulnerability
< 3.2.8.1
17/03/2026
SQL Injection vulnerability
< 3.2.8
22/01/2026
Broken Access Control vulnerability
<= 3.2.6
05/01/2026
SQL Injection vulnerability
< 3.2.6
07/11/2025
Broken Access Control vulnerability
<= 3.2.6
07/11/2025
Cross Site Scripting (XSS) vulnerability
< 3.2.6
07/11/2025
Local File Inclusion vulnerability
< 3.2.6
06/11/2025
Arbitrary Content Deletion Vulnerability
< 3.2.3
06/09/2025
Reflected Cross Site Scripting (XSS) vulnerability
< 3.2.3
06/09/2025
SQL Injection Vulnerability
< 3.2.2
10/07/2025
Broken Access Control vulnerability
< 3.2.1
27/03/2025
Broken Access Control vulnerability
< 3.2.1
27/03/2025
SQL Injection vulnerability
< 3.2.1
27/03/2025
PHP Object Injection vulnerability
< 3.2.1
27/03/2025
Reflected Cross-Site Scripting vulnerability
<= 3.1.8
14/03/2025
Unauthenticated Local File Inclusion via hotel_alone_load_more_post vulnerability
<= 3.1.8
14/03/2025
Authenticated (Contributor+) Local File Inclusion via Shortcode vulnerability
<= 3.1.8
27/02/2025
Missing Authorization in Several AJAX Actions vulnerability
<= 3.1.6
18/12/2024
Unauthenticated SQL Injection via order_id vulnerability
<= 3.1.6
18/12/2024
Unauthenticated SQL Injection (SQLi) vulnerability
<= 2.8.3
09/07/2020
Unauthenticated Cross-Site Scripting (XSS) vulnerability
<= 2.8.3
09/07/2020
Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability
<= 2.8.1
19/06/2020
Reflected & Persistent Cross-Site Scripting (XSS) vulnerabilities
<= 2.7.8.5
13/01/2020
Reflected & Stored Cross-Site Scripting XSS vulnerability
<= 2.7
11/06/2019
Reflected & Stored Cross-Site Scripting (XSS) vulnerabilities
<= 2.7.8.3
05/05/2019