bdthemes has 2 CVEs on record. 2 were published in the last 90 days. The median CVSS is 6.0 (medium).
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.0
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
Weakness classes
Products
- Live Copy Paste for Elementor – Cross Domain Copy Paste & Page Duplicator 1
- bdthemes-element-pack-lite 1
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2026-66574Medium· 6.5Contributor Cross Site Scripting (XSS) in Element Pack Elementor Addons <= 8.8.3 versions.36CVE-2026-92991Medium· 5.4The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output escaping30
bdthemes vulnerabilities
CVEs affecting bdthemes, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-92991Medium· 5.4The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output escaping
The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output escaping. This makes it possible for attackers who can compromise the Sigmative…
▾ Sunlitbdthemes · Live Copy Paste for Elementor – Cross Domain Copy Paste & Page DuplicatorEPSS 0.29%via NVD
CVE-2026-66574Medium· 6.5Contributor Cross Site Scripting (XSS) in Element Pack Elementor Addons <= 8.8.3 versions.
Contributor Cross Site Scripting (XSS) in Element Pack Elementor Addons <= 8.8.3 versions.
▾ Sunlitbdthemes · bdthemes-element-pack-liteEPSS 0.16%via NVD