← WordPress Vulnerabilities
WordPress security by component

Orchid Store

Orchid Store is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Jan 23, 2026; the highest CVE/CNA score is 5.3.

Theme slug: orchid-store

CVE-2026-24612: Orchid Store: A security weakness

Orchid Store is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedJan 23, 2026
Safe version guidanceSee mitigation notes
Safe version
Jan 23, 2026 CVE-2026-24612
Orchid Store: A security weakness
Orchid Store is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Aug 08, 2024 CVE-2024-6987
Orchid Store: A security weakness
Orchid Store is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending