Consus
Consus has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Consus has a vendor fix available, so running the current release closes it.
All of these findings were reported by Dhabaleshwar Das. Consus is installed on roughly 400 WordPress sites, so each unpatched flaw has a wide blast radius.
CVE-2024-34810Extend Themes <= (Multiple Versions) - Cross-Site Request Forgery
Read the full analysisVulnerability Records

Consus
Author
Extend Themes
Consus is an innovative, easily customizable, multi-purpose theme, focused on empowering users to build astonishing WordPress websites. Consus is mainly designed for small businesses, startups, or personal portfolio websites and works perfectly with Kubio Page Builder which enriches the WordPress block editor with a variety of new blocks and advanced styling options to give you full design freedom.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C