Title: False positive: version number range
Last modified: August 18, 2026

---

# False positive: version number range

 *  Resolved [airflo](https://wordpress.org/support/users/airflo/)
 * (@airflo)
 * [2 weeks, 4 days ago](https://wordpress.org/support/topic/false-positive-version-number-range/)
 * Hi there!
 * I received a vulnerability notification that might point to a logic issue in 
   your plugin.
 * I am using the Divi theme in version 4.27.7 and 5.8.1 on different sites. There
   is a CVE regarding versions 5.0 to 5.8.1: [https://www.cve.org/CVERecord?id=CVE-2026-13712](https://www.cve.org/CVERecord?id=CVE-2026-13712)
 * I am getting a notification for both versions. However, version 4.27.7 is not
   affected and should not trigger the warning. I don’t know if this is an issue
   of the CVE data (is there a range, or is it just “less than 5.9.0”), or how your
   plugin evaluates the version number.
 * Could you have a look?
 * Kind regards,
 * Florian
 * The page I need help with: _[[log in](https://login.wordpress.org/?redirect_to=https%3A%2F%2Fwordpress.org%2Fsupport%2Ftopic%2Ffalse-positive-version-number-range%2F%3Foutput_format%3Dmd&locale=en_US)
   to see the link]_

Viewing 3 replies - 1 through 3 (of 3 total)

 *  Thread Starter [airflo](https://wordpress.org/support/users/airflo/)
 * (@airflo)
 * [2 weeks, 4 days ago](https://wordpress.org/support/topic/false-positive-version-number-range/#post-18996210)
 * I queried your API directly, and it seems that this is a data issue rather than
   a logic issue:
 * [https://www.wpvulnerability.net/theme/divi/](https://www.wpvulnerability.net/theme/divi/)
 * vulnerability 11:
 *     ```wp-block-code
       "operator":{"min_version":null,"min_operator":null,"max_version":"5.9.0","max_operator":"lt","unfixed":"0","closed":"0"}
       ```
   
 *  Plugin Author [Javier Casares](https://wordpress.org/support/users/javiercasares/)
 * (@javiercasares)
 * [2 weeks, 4 days ago](https://wordpress.org/support/topic/false-positive-version-number-range/#post-18996305)
 * Fixed in the API. There is some cache, so may be there in a few minutes.
 *  Thread Starter [airflo](https://wordpress.org/support/users/airflo/)
 * (@airflo)
 * [2 weeks, 3 days ago](https://wordpress.org/support/topic/false-positive-version-number-range/#post-18997053)
 * Awesome, it works! Thank you very much!

Viewing 3 replies - 1 through 3 (of 3 total)

You must be [logged in](https://login.wordpress.org/?redirect_to=https%3A%2F%2Fwordpress.org%2Fsupport%2Ftopic%2Ffalse-positive-version-number-range%2F%3Foutput_format%3Dmd&locale=en_US)
to reply to this topic.

 * ![](https://ps.w.org/wpvulnerability/assets/icon.svg?rev=3387690)
 * [WPVulnerability](https://wordpress.org/plugins/wpvulnerability/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wpvulnerability/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wpvulnerability/)
 * [Active Topics](https://wordpress.org/support/plugin/wpvulnerability/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wpvulnerability/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wpvulnerability/reviews/)

 * 4 replies
 * 2 participants
 * Last reply from: [airflo](https://wordpress.org/support/users/airflo/)
 * Last activity: [2 weeks, 3 days ago](https://wordpress.org/support/topic/false-positive-version-number-range/#post-18997053)
 * Status: resolved