search
WooCommerce
Trends
- 1Avada WordPress theme hit by reflected XSS vulnerability●🚨 EUVD-2026-91174 📊 Score: 6.1/10 (CVSS v3.1) 📦 Product: Avada | Website Builder For WordPress & WooCommerce 🏢 Vendor: T
A medium-severity vulnerability, tracked as EUVD-2026-91174 with a CVSS score of 6.1, has been reported in Avada, the popular website builder theme for WordPress and WooCommerce from vendor ThemeFusion. The flaw is a reflected cross-site scripting issue, updated on 2026-10-02, allowing attackers to inject malicious scripts via crafted links. WordPress site owners using Avada are advised to update promptly.