Pricing
Case studies
Login
Start trial
Flatsome
EPC
Developer
N/A
Latest version
N/A
Downloads
N/A
Last updated
WordPress Theme
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
1 present
6 patched
2 Mitigation rules
Cross Site Scripting (XSS) vulnerability
<= 3.20.5
06/10/2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
<= 3.20.0
04/09/2025
Broken Access Control vulnerability
<= 3.19.6
24/10/2024
Authenticated Stored Cross-Site Scripting via Shortcodes vulnerability
<= 3.18.7
21/06/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
<= 3.18.7
20/06/2024
Unauthenticated PHP Object Injection vulnerability
<= 3.17.5
06/09/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 3.16.8
09/05/2023