WordPress security by component
Raptive Ads
Plugin description
Raptive Ads is a WordPress component with 4 published CVE records in this archive. The latest tracked vulnerability was published Aug 20, 2025; the highest published CVSS base score is 7.1.
Plugin slug:
adthrive-adsLatest vulnerability
CVE-2025-53319: Raptive Ads: Cross-site scripting
Raptive Ads is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
| Safe version |
|
||
|---|---|---|---|
| Aug 20, 2025 |
CVE-2025-53319
Raptive Ads: Cross-site scripting
Raptive Ads is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE7.1
NVDPending
|
| Apr 17, 2025 |
CVE-2025-32554
Raptive Ads: Cross-site scripting
Raptive Ads is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE7.1
NVDPending
|
| Feb 19, 2025 |
CVE-2024-13364
Raptive Ads: A security weakness
Raptive Ads is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Feb 19, 2025 |
CVE-2024-13363
Raptive Ads: Cross-site scripting
Raptive Ads is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVDPending
|