WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Theater for WordPress

Manage and publish events for your theater, live venue, cinema, club or festival.

7Reported vulnerabilities
6.5Highest CVSS score
0.19.1Latest version
600+Active installs

What to do now

Update Theater for WordPress to 0.19.1 or later. 7 of these have a fixed version available. Updating resolves them.

Plugin last updated: December 17, 2025 / Tested up to WordPress: 6.9.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2025-69343 Medium 6.5 0.2% 0 to 0.19 (inclusive) 0.19.1 March 5, 2026
CVE-2025-58020 Medium 6.5 0.3% 0 to 0.18.8 (inclusive) 0.19 September 22, 2025
CVE-2024-11371 Medium 6.1 0.6% Before 0.18.7 0.18.7 November 21, 2024
CVE-2025-64259 Medium 5.3 0.2% 0 to 0.18.8 (inclusive) 0.19 November 13, 2025
CVE-2023-47833 Medium 4.8 0.4% 0.18.3 and earlier 0.18.4 November 23, 2023
CVE-2025-69331 Medium 4.3 0.2% 0 to 0.19 (inclusive) 0.19.1 January 6, 2026
CVE-2025-31846 Medium 4.3 0.4% 0 to 0.18.7 (inclusive) 0.18.8 April 1, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.