Big Store
Big Store has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2023 and 2025; all 2 are fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (50%). Other recurring categories include Missing Authorization.
Every one of the 2 issues recorded for Big Store has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each. Big Store is installed on roughly 900 WordPress sites, so each unpatched flaw has a wide blast radius.
CVE-2025-30881Big Store <= 2.0.8 - Missing Authorization
Read the full analysisVulnerability Records

Big Store
Author
ThemeHunk
Big Store is an eCommerce WordPress theme specially made for shopping websites. You can create any type of online store website using it. Theme is best suited for Fashion & Clothing store, furniture, grocery, clothing, electronic, gadget store and decorative gifts stores. Theme option panel is so easy to use and theme is also fully responsive to each & every device like Mobile, ipads etc. Some theme features are Tabbed product carousel, Woo Category layouts, Header & Footer combinations, quick view, translation ready, Ajax search, shop with category, Top slider layouts, Product Filter, Product styles, Color & Background options etc. Theme is deeply integrated with WooCommerce plugin to sell your products online. See demo here: https://wpthemes.themehunk.com/big-store-electro
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C