Known vulnerabilities in Custom Post Type UI
Admin UI for creating custom content types like post types and taxonomies
4Reported vulnerabilities
8.8Highest CVSS score
1.19.3Latest version
1,000,000+Active installs
What to do now
Update Custom Post Type UI to 1.18.2 or later.
4 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2023-1623 | Medium | 0.4% | Before 1.13.5 | 1.13.5 |
April 24, 2023 |
| WF-08115f30-f38b-4c13-803e-5de873f83a17 | High | — | Before 1.7.4 | 1.7.4 |
March 18, 2020 |
| CVE-2025-12826 | Medium | 0.3% | 1.18.0 and earlier | 1.18.1 |
December 3, 2025 |
| CVE-2025-14056 | Medium | 0.3% | 0 to 1.18.1 (inclusive) | 1.18.2 |
December 13, 2025 |