CVEs we hold for Artbees
Records whose assigning authority named Artbees as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-39491WordPress JupiterX Core plugin <= 4.14.1 - Cross Site Scripting (XSS) vulnerabilityartbees JupiterX Core
CVE-2026-39490WordPress JupiterX Core plugin <= 4.14.1 - Broken Access Control vulnerabilityartbees JupiterX Core
CVE-2026-3533JupiterX Core <= 4.14.1 - Authenticated (Subscriber+) Missing Authorization To Limited File Upload via Popup Template…artbees Jupiter X Core
CVE-2025-58264WordPress JupiterX Core Plugin <= 4.11.0 - Cross Site Scripting (XSS) Vulnerabilityartbees JupiterX Core
CVE-2025-50004WordPress JupiterX Core plugin <= 4.10.1 - PHP Object Injection vulnerabilityartbees JupiterX Core
CVE-2025-47475WordPress JupiterX Core plugin <= 4.8.11 - Cross Site Scripting (XSS) Vulnerabilityartbees JupiterX Core
CVE-2025-3888Jupiterx Core <= 4.8.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Inline SVGartbees Jupiter X Core
CVE-2025-2105Jupiter X Core <= 4.8.11 - Unauthenticated PHP Object Injection via PHARartbees Jupiter X Core
CVE-2025-0366Jupiter X Core <= 4.8.7 - Authenticated (Contributor+) SVG Upload to Local File Inclusion (Remote Code Execution)artbees Jupiter X Core
CVE-2025-0365Jupiterx Core <= 4.8.7 - Authenticated (Contributor+) Arbitrary File Readartbees Jupiter X Core
CVE-2024-7781Jupiter X Core <= 4.7.5 - Limited Unauthenticated Authentication Bypass to Account Takeoverartbees Jupiter X Core
CVE-2024-4608SellKit – Funnel builder and checkout optimizer for WooCommerce to sell more, faster <= 1.9.8 - Authenticated…artbees SellKit – Funnel builder and checkout optimizer for…
CVE-2024-30509WordPress SellKit plugin <= 1.8.1 - Arbitrary File Download vulnerabilityArtbees SellKit
CVE-2024-12316Jupiter X Core <= 4.8.5 - Missing Authorization to Unauthenticated Popup Template Exportartbees Jupiter X Core
CVE-2024-12033Jupiter X Core <= 4.8.5 - Missing Authorization to Authenticated Library Syncartbees Jupiter X Core
CVE-2023-38394WordPress Jupiter X Core plugin <= 3.3.0 - Multiple Auth. Broken Access Control vulnerabilityArtbees JupiterX Core
CVE-2023-38389WordPress Jupiter X Core plugin <= 3.3.8 - Unauthenticated Account Takeover vulnerabilityArtbees JupiterX Core
CVE-2023-38388WordPress Jupiter X Core plugin <= 3.3.5 - Unauth. Arbitrary File Upload vulnerabilityArtbees JupiterX Core
CVE-2023-38385WordPress Jupiter X Core plugin <= 3.3.0 - Multiple Auth. Broken Access Control vulnerabilityArtbees JupiterX Core
CVE-2023-3813Jupiter X Core <= 4.6.6 - Unauthenticated Arbitrary File Downloadartbees Jupiter X Core
CVE-2023-32110WordPress JupiterX theme <= 3.0.0 - Auth. Local File Inclusion vulnerabilityartbees JupiterX
CVE-2022-1659JupiterX Core <= 2.0.6 - Information Disclosure, Modification, and Denial of ServiceArtBees Jupiter X Core
CVE-2022-1657JupiterX Theme <= 2.0.6 and Jupiter Theme <= 6.10.1 - Authenticated Path Traversal and Local File InclusionArtBees Jupiter X
CVE-2022-1656JupiterX Theme <= 2.0.6 and JupiterX Core <= 2.0.6 - Authenticated Arbitrary Plugin Deactivation and Settings…ArtBees Jupiter X
CVE-2022-1654Jupiter Theme <= 6.10.1 and JupiterX Core Plugin <= 2.0.7 - Authenticated Privilege EscalationArtBees Jupiter
27 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.