Catch Breadcrumb
Catch Breadcrumb has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2020 and 2021; all 2 are fixed as of September 2026. Their average CVSS score is 5.8, and the most serious one scores 6.1 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (50%). Other recurring categories include Missing Authorization.
Every one of the 2 issues recorded for Catch Breadcrumb has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each. Catch Breadcrumb is installed on roughly 2,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2020-12054Catch Breadcrumb <= 1.5.4 - Reflected Cross-Site Scripting
Read the full analysisVulnerability Records
Catch Breadcrumb
Author
Catch Themes
Catch Breadcrumb is a simple yet feature-rich breadcrumb WordPress plugin that adds seamless breadcrumbs navigation to your website. The plugin provides customization options, with which you can tweak the settings according to your website. Catch Breadcrumb is extremely lightweight, provides a responsive design and comes with features such as shortcode options, breadcrumb selector, separator, and more. With these features available in the plugin, you can display the breadcrumb trail wherever you wish. Additionally, with the new WordPress plugin for breadcrumbs, you have the option to whether or not display the breadcrumb on the homepage of your website. Checkmark the homepage option in the settings page if you want the breadcrumb to display in the homepage. Add sophisticated breadcrumb trails with Catch Breadcrumb and make your website elegant looking and user-friendly.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C