CVE-2023-39313: Theme-Fusion Avada
High severity, CVSS 7.7. EPSS: 0.6% chance of exploitation in the next 30 days.
Server-Side Request Forgery (SSRF) vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1.
Affected products
- Theme-Fusion Avada: before 7.11.2 (fixed in 7.11.2)
Published 2024-03-28. Last modified 2026-06-17.