Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 12 Jan 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:theme-fusion:avada:*:*:*:*:*:wordpress:*:* |
Thu, 18 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 16 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Theme-fusion
Theme-fusion avada Wordpress Wordpress wordpress |
|
| Vendors & Products |
Theme-fusion
Theme-fusion avada Wordpress Wordpress wordpress |
Tue, 16 Dec 2025 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in ThemeFusion Avada avada allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Avada: from n/a through <= 7.13.1. | |
| Title | WordPress Avada theme <= 7.13.1 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-01-20T14:28:23.104Z
Reserved: 2025-11-06T13:11:11.070Z
Link: CVE-2025-64634
Updated: 2025-12-18T19:54:54.834Z
Status : Modified
Published: 2025-12-16T09:15:55.737
Modified: 2026-01-20T15:18:59.467
Link: CVE-2025-64634
No data.
OpenCVE Enrichment
Updated: 2025-12-16T17:09:22Z