Raptive Ads
Raptive Ads has 4 disclosed vulnerabilities in the WordSec catalog, all reported in 2025; all 4 are fixed as of September 2026. Their average CVSS score is 5.9, and the most serious one scores 6.1 out of 10. 2025 was the busiest year with 4 disclosures.
The most common weakness is Cross-Site Scripting, behind 3 of the records (75%). Other recurring categories include Missing Authorization.
Every one of the 4 issues recorded for Raptive Ads has a vendor fix available, so running the current release closes all known holes.
3 independent researchers contributed these findings, most of them (2) reported by Parasimpaticki. Raptive Ads is installed on roughly 6,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2025-53319Raptive Ads <= 3.8.0 - Reflected Cross-Site Scripting
Read the full analysisVulnerability Records

Raptive Ads
Author
Raptive
The Raptive Ads WordPress Plugin is the easiest and most popular way to install Raptive’s innovative ad code and get ads running on your site. The plugin adds a JavaScript tag to your site and lets you set up a few preferences within WordPress. Disable ads by category, tag, or individual page Disable video metadata Enable CLS optimization Enable Web Stories ads Enable Ad Block Recovery Override ads.txt Create a video sitemap redirect Raptive is a strategic partner equipping independent creators and enterprise publishers with unmatched ad management, world-class tech, and inspired opportunities to make you more money.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C