Theme nectar Vulnerabilities
CVE security advisories and vulnerability history for Theme nectar.
Overview
Theme nectar has 9 published CVE records since 2023, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 0 have a known public exploit. The average CVSS base score across scored CVEs is 6.4.
This page aggregates every publicly disclosed vulnerability (CVE) affecting Theme nectar products, with severity breakdowns, the most-affected products, the most common weakness types, and the latest disclosures.
Security scorecard
A quick read on Theme nectar's vulnerability posture, as a share of its 9 published CVEs.
- Average CVSS
- 6.4
- Critical / high
- 33%
- Actively exploited (KEV)
- 0%
- Public exploit available
- 0%
- Patch available
- 100%
across 9 scored CVEs
3 of 9 scored
0 of 9 CVEs
0 of 9 CVEs
9 of 9 CVEs
Severity and exploitation
How the CVSS severity of Theme nectar's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of Theme nectar's CVEs are currently listed in CISA's KEV catalog.
Public exploits
0
No Theme nectar CVEs currently have a tracked public exploit.
Most affected products
The Theme nectar products with the most published CVEs. Follow any product to browse its versions and vulnerabilities.
Common weakness types
The CWE weakness categories most often found in Theme nectar CVEs. Follow any weakness for its full explanation.
CNAs that assign these CVEs
The CVE Numbering Authorities that publish Theme nectar CVE records.
Disclosure activity by year
How many Theme nectar CVEs were published each year.
Latest Theme nectar CVEs
The most recently disclosed vulnerabilities affecting Theme nectar.
- Medium · CVSS 6.5EPSS 0.1%2025-12-16
- Medium · CVSS 6.5EPSS 0.1%2025-12-16
- Medium · CVSS 4.3EPSS 0.2%2025-12-16
- Medium · CVSS 4.3EPSS 0.2%2025-11-06
- High · CVSS 7.5EPSS 0.6%2024-05-18
- High · CVSS 8.8EPSS 0.6%2024-05-18
- Salient Shortcodes <= 1.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeMedium · CVSS 6.4EPSS 0.3%2024-05-18
- High · CVSS 7.1EPSS 0.4%2023-11-30
- Medium · CVSS 6.5EPSS 0.4%2023-11-30
Track new Theme nectar CVEs as they are disclosed and get AI-written analysis and remediation guidance.
Monitor Theme nectar CVEsOther vendors
Browse vulnerabilities for other tracked vendors.
Frequently asked questions
Common questions about Theme nectar vulnerabilities.
- How many CVEs does Theme nectar have?
- Theme nectar has 9 published CVE records since 2023, including 4 in the last two years.
- How many Theme nectar CVEs are in CISA KEV?
- None of Theme nectar's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Which Theme nectar products have the most CVEs?
- The Theme nectar products with the most published CVEs are Salient Core, Salient Shortcodes, Salient, Salient Portfolio.
- What are the most common weakness types in Theme nectar CVEs?
- Theme nectar's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-862 (Missing Authorization), CWE-98 (Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')).
- Are there public exploits for Theme nectar vulnerabilities?
- No Theme nectar CVEs currently have a tracked public exploit in this dataset.
- What is the average severity of Theme nectar CVEs?
- The average CVSS base score across Theme nectar's scored CVEs is 6.4.
References
- The MITRE CVE Program (opens in a new tab)
- Learn: What is a CVE?
- CWE directory: the weakness types these CVEs map to
- CNA directory: the CNAs that assign these CVEs
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Track Theme nectar vulnerabilities
Monitor new Theme nectar vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.