Viable Blog
Viable Blog has one disclosed vulnerability in the WordSec catalog, all reported in 2023; it remains unpatched as of September 2026. Their average CVSS score is 6.1, and the most serious one scores 6.1 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Viable Blog has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2023.
All of these findings were reported by László Radnai. Viable Blog is installed on roughly 90 WordPress sites, so each unpatched flaw has a wide blast radius. The upstream project has not shipped an update in about 2 years, so new fixes are unlikely to arrive on their own.
CVE-2023-27419Viable blog <= 1.1.4 - Cross-Site Scripting
Read the full analysisVulnerability Records

Viable Blog
Author
everestthemes
Viable Blog is 100% responsive & modern, beautiful and clean WordPress blog theme designed and developed specially for personal blogging. Viable is developed following WordPress standards. It is cross browser compatable & looks beautiful in any media device. If you are looking for demo content & support kindly do log-on to https://everestthemes.com/
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C