{"api_version":"v1","generated_at":"2026-10-08T19:55:00+00:00","product":{"cve_count":8,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-themefusion-avada-883387015510","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/avada","name":"Avada","next_cursor":null,"observations":[{"affected":"Avada: n/a < 7.13.2","affected_versions_present":true,"cve_id":"CVE-2025-58922","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-58922","fixed":"Update the WordPress Avada theme to the latest available version (at least 7.13.2).","last_modified":"2026-04-28T16:13:49.641Z","patch_url":"https://patchstack.com/database/wordpress/theme/avada/vulnerability/wordpress-avada-theme-7-13-2-cross-site-request-forgery-csrf-vulnerability?_s_id=cve","primary_source":"","published":"2026-04-22T15:44:47.623Z"},{"affected":"\u2264 7.13.2","affected_versions_present":true,"cve_id":"CVE-2025-64634","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64634","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:14:15.281Z","patch_url":"","primary_source":"","published":"2025-12-16T08:12:51.156Z"},{"affected":"\u2264 7.11.10","affected_versions_present":true,"cve_id":"CVE-2025-24748","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-24748","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:11:33.929Z","patch_url":"","primary_source":"","published":"2025-07-04T08:42:05.486Z"},{"affected":"\u2264 7.11.10","affected_versions_present":true,"cve_id":"CVE-2024-54357","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-54357","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T23:40:36.093Z","patch_url":"","primary_source":"","published":"2024-12-16T15:57:53.232Z"},{"affected":"n/a \u2264 7.11.1","affected_versions_present":true,"cve_id":"CVE-2023-39312","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39312","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:08:34.716Z","patch_url":"","primary_source":"","published":"2024-06-19T14:23:39.616Z"},{"affected":"n/a \u2264 7.11.1","affected_versions_present":true,"cve_id":"CVE-2023-39922","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39922","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:08:34.964Z","patch_url":"","primary_source":"","published":"2024-06-19T12:17:04.953Z"},{"affected":"n/a \u2264 7.11.1","affected_versions_present":true,"cve_id":"CVE-2023-39313","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39313","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:08:34.729Z","patch_url":"","primary_source":"","published":"2024-03-28T05:56:39.972Z"},{"affected":"n/a \u2264 7.11.1","affected_versions_present":true,"cve_id":"CVE-2023-39307","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-39307","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:08:34.625Z","patch_url":"","primary_source":"","published":"2024-03-26T20:43:16.646Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"ThemeFusion"}}
