WEN Responsive Columns
WEN Responsive Columns has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for WEN Responsive Columns has a vendor fix available, so running the current release closes it.
All of these findings were reported by LVT-tholv2k. WEN Responsive Columns is installed on roughly 800 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.5.10.
CVE-2024-27988WEN Responsive Columns <= 1.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
Read the full analysisVulnerability Records

WEN Responsive Columns
Author
WEN Themes
WEN Responsive Columns provides you with a shortcode that will help display columnized content. Just one shortcode [wrc_column] is in effect for convenience but the sole is enough for generating multiple mixes of columns. Grids could be 2, 3, 4, 5 or 12 and you can easily add columns using button in the editor. Select your desired layout and use shortcode. That’s it ! Plugin: Home Page If you like this plugin, please rate and review. If you have any question, suggestion or issue, please post here.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C