Xtendify

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 12
    Known Exploited: 0
    3
    Critical Level Threats
    4
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-7694

    Woffice Core <= 5.4.26 - Authenticated (Contributor+) Arbitrary File Deletion

    Last Modified: Apr 21, 2026
    Published: Aug 02, 2025

    CVE-2025-2798

    Woffice <= 5.4.21 - Authentication Bypass via Registration Role

    Last Modified: Apr 21, 2026
    Published: Apr 04, 2025

    CVE-2025-2780

    Woffice Core <= 5.4.21 - Authenticated (Subscriber+) Arbitrary File Upload

    Last Modified: Apr 21, 2026
    Published: Apr 04, 2025

    CVE-2025-2797

    Woffice Core <= 5.4.21 - Cross-Site Request Forgery to User Registration Approval

    Last Modified: Apr 08, 2026
    Published: Apr 04, 2025

    CVE-2024-43234

    WordPress Woffice theme <= 5.4.14 - Unauthenticated Account Takeover vulnerability

    Last Modified: Apr 29, 2026
    Published: Dec 16, 2024
    Items Per Page
    Xtendify Vulnerabilities & Security CVEs | CVE-DB