Vulnerability in Astra — CVE-2026-27085
LowSeverity
—Estimated exploit probability
1,000,000+ sitesInstalls
4.14.0Fixed in
What to do now
Update Astra to 4.14.0 or later.
Affected versions
- Everything up to and including 4.13.12
Affected: Astra (theme, astra)
What the vulnerability is
Shop manager Content Injection in Astra WordPress Theme <= 4.13.12 versions.