Pricing
Case studies
Login
Start trial
Traveler
Shinetheme
Developer
N/A
Latest version
N/A
Downloads
N/A
Last updated
WordPress Theme
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
2 present
20 fixed
18 Mitigation rules
SQL Injection vulnerability
< 3.2.6
Nov 7, 2025
Broken Access Control vulnerability
<= 3.2.6
Nov 7, 2025
Cross Site Scripting (XSS) vulnerability
< 3.2.6
Nov 7, 2025
Local File Inclusion vulnerability
< 3.2.6
Nov 6, 2025
Arbitrary Content Deletion Vulnerability
< 3.2.3
Sep 6, 2025
Reflected Cross Site Scripting (XSS) vulnerability
< 3.2.3
Sep 6, 2025
SQL Injection Vulnerability
< 3.2.2
Jul 10, 2025
Broken Access Control vulnerability
< 3.2.1
Mar 27, 2025
Broken Access Control vulnerability
< 3.2.1
Mar 27, 2025
SQL Injection vulnerability
< 3.2.1
Mar 27, 2025
PHP Object Injection vulnerability
< 3.2.1
Mar 27, 2025
Reflected Cross-Site Scripting vulnerability
<= 3.1.8
Mar 14, 2025
Unauthenticated Local File Inclusion via hotel_alone_load_more_post vulnerability
<= 3.1.8
Mar 14, 2025
Authenticated (Contributor+) Local File Inclusion via Shortcode vulnerability
<= 3.1.8
Feb 27, 2025
Missing Authorization in Several AJAX Actions vulnerability
<= 3.1.6
Dec 18, 2024
Unauthenticated SQL Injection via order_id vulnerability
<= 3.1.6
Dec 18, 2024
Unauthenticated SQL Injection (SQLi) vulnerability
<= 2.8.3
Jul 9, 2020
Unauthenticated Cross-Site Scripting (XSS) vulnerability
<= 2.8.3
Jul 9, 2020
Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability
<= 2.8.1
Jun 19, 2020
Reflected & Persistent Cross-Site Scripting (XSS) vulnerabilities
<= 2.7.8.5
Jan 13, 2020
Reflected & Stored Cross-Site Scripting XSS vulnerability
<= 2.7
Jun 11, 2019
Reflected & Stored Cross-Site Scripting (XSS) vulnerabilities
<= 2.7.8.3
May 5, 2019