Apptivo Business Site
Apptivo Business Site has 3 disclosed vulnerabilities in the WordSec catalog, reported between 2022 and 2025; 2 are fixed and 1 remains unpatched as of September 2026. Their average CVSS score is 5.0, and the most serious one scores 5.5 out of 10. 2025 was the busiest year with 2 disclosures.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (33%). Other recurring categories include Cross-Site Scripting, Missing Authorization.
2 of the records (67%) have a vendor fix, while 1 remain unpatched. The oldest unresolved one dates back to 2025.
3 independent researchers contributed these findings, one record each. Apptivo Business Site is installed on roughly 20 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2024-13405Apptivo Business Site CRM <= 5.3 - Cross-Site Request Forgery to IP Address Block
Read the full analysisVulnerability Records

Apptivo Business Site
Author
Apptivo
The Apptivo Business Site Plugin makes it simple to create effective business websites with features that integrate with Apptivo. Create customized contact forms that work with Apptivo CRM tools, create newsletter signup forms, and manage customer testimonials. All information is synced directly with your Apptivo small business management account, making it simple to keep your website in sync with your business. Plugin’s Official Site Apptivo WordPress Plugins (https://www.apptivo.com/integrations/wordpress-crm-plugin/)
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C