Magazine Basic
Magazine Basic has one disclosed vulnerability in the WordSec catalog, all reported in 2012; it remains unpatched as of September 2026. Their average CVSS score is 9.8, and the most serious one scores 9.8 out of 10. Severity breakdown: 1 critical and 0 high.
The most common weakness is SQL Injection, behind 1 of the records (100%).
The one issue recorded for Magazine Basic has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2012.
All of these findings were reported by Novin hack (khatarnak). Magazine Basic is installed on roughly 1,000 WordPress sites, so each unpatched flaw has a wide blast radius. The upstream project has not shipped an update in about 9 years, so new fixes are unlikely to arrive on their own.
Magazine Basic (Unknown Versions) - SQL Injection
Read the full analysisVulnerability Records

Magazine Basic
Author
bandicootmarketing
Create a truly unique design with Magazine Basic, a lightweight and fully responsive HTML5 theme based on the Gridiculous boilerplate. Use the Customizer to add your own background, page layout, site width and more. Distinguish each post with one of the eight supported post formats, such as: Video, Image, Aside, Status, Audio, Quote, Link and Gallery. Install JetPack to display each of your galleries through a tiled view and jQuery carousel. Compatible with bbPress & BuddyPress. Built using Bootstrap. Magazine Basic uses Google Fonts for improved typeface readability and works perfectly in desktop browsers, tablets and handheld devices. For a live demo go to http://demos.bavotasan.com/magazine-basic/.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C