Chic Lite
Chic Lite has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Chic Lite has a vendor fix available, so running the current release closes it.
All of these findings were reported by Dhabaleshwar Das. Chic Lite is installed on roughly 3,000 WordPress sites, so each unpatched flaw has a wide blast radius.
CVE-2024-37104Chic Lite <= 1.1.3 - Cross-Site Request Forgery to Notice Dismissal
Read the full analysisVulnerability Records

Chic Lite
Author
Rara Themes
Chic Lite is a feature-rich feminine blog theme for professional bloggers. The theme is mobile friendly, SEO optimized, Schema friendly, and loads faster to help you rank your website higher on search engines. If you want to share your expert fashion tips, travel expertise, your favorite food recipes, or create a lifestyle, beauty and makeup, coaching, or any other niche blog, Chic Lite is for you. You can easily choose from unlimited colors and 900+ Google fonts to change your website look and feel with a single click. This theme comes with a gorgeous newsletter section that can help you generate more leads and Instagram section to flaunt your Instagram posts. Chic Lite is translation ready, WooCommerce and RTL compatible. Check demo at https://rarathemes.com/theme-demo/?theme=chic-lite, read the documentation at https://docs.rarathemes.com/docs/chic-lite/, and get support at https://rarathemes.com/support-ticket/.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C