| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-68037 | WordPress Export Media URLs plugin <= 2.2 - Reflected Cross Site Scripting (XSS) vulnerability | Atlas Gondal | Export Media URLs | - | - | 2026-02-20 15:46:37 | Deep Dive |
| CVE-2025-7708 | Sensitive Data Exposure in Atlas Software's k12net | Atlas Educational Software Industry Ltd. Co. | k12net | Medium | 6.8 | 2026-02-09 11:45:44 | Deep Dive |
| CVE-2025-14386 | Search Atlas SEO – Premier SEO Plugin for One-Click WP Publishing & Integrated AI Optimization 2.4.4 - 2.5.12 - Missing Authorization to Authenticated (Subscriber+) Authentication Bypass via Account Takeover | shahrukhlinkgraph | Search Atlas SEO – Premier SEO Plugin for One-Click WP Publishing & Integrated AI Optimization | High | 8.8 | 2026-01-28 11:23:39 | Deep Dive |
| CVE-2025-22509 | WordPress Atlas theme <= 2.1.0 - Local File Inclusion vulnerability | TMRW-studio | Atlas | High | 8.1 | 2026-01-08 09:17:39 | Deep Dive |
| CVE-2025-11575 | MongoDB Atlas SQL ODBC driver installation via MSI may leave ACLs unset on custom installation directories | MongoDB | Atlas SQL ODBC driver | High | 7.8 | 2025-10-23 00:22:01 | Deep Dive |
| CVE-2025-58019 | WordPress Search Atlas SEO Plugin <= 2.5.4 - Cross Site Scripting (XSS) Vulnerability | Search Atlas Group | Search Atlas SEO | Medium | 6.5 | 2025-09-22 18:24:02 | Deep Dive |
| CVE-2024-46910 | Apache Atlas: An authenticated user can perform XSS and potentially impersonate another user | Apache Software Foundation | Apache Atlas | 中危 | - | 2025-02-13 08:52:57 | Deep Dive |
| CVE-2024-52472 | WordPress Weather Atlas Widget plugin <= 3.0.3 - Cross Site Scripting (XSS) vulnerability | Weather Atlas | Weather Atlas Widget | High | 7.1 | 2024-11-20 14:31:03 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-47387 | WordPress Search Atlas SEO plugin <= 1.8.2 - Cross Site Scripting (XSS) vulnerability | Search Atlas Group | Search Atlas SEO | Medium | 5.9 | 2024-10-05 14:49:19 | Deep Dive |
| CVE-2024-37959 | WordPress Power BI Embedded for WordPress plugin <= 1.1.7 - Cross Site Scripting (XSS) vulnerability | Atlas Public Policy | Power BI Embedded for WordPress | Medium | 6.5 | 2024-07-20 08:10:01 | Deep Dive |
| CVE-2023-51510 | WordPress Export Media URLs plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability | Atlas Gondal | Export Media URLs | Medium | 4.3 | 2024-03-16 00:49:16 | Deep Dive |
| CVE-2023-5163 | Weather Atlas Widget <= 1.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | weatheratlas | Weather Atlas Widget | Medium | 6.4 | 2023-11-22 15:33:34 | Deep Dive |
| CVE-2023-0436 | Secret logging may occur in debug mode of Atlas Operator | MongoDB Inc | MongoDB Atlas Kubernetes Operator | Medium | 4.5 | 2023-11-07 11:44:48 | Deep Dive |
| CVE-2023-3756 | Creativeitem Atlas Business Directory Listing search cross site scripting | Creativeitem | Atlas Business Directory Listing | Low | 3.5 | 2023-07-19 04:00:04 | Deep Dive |
| CVE-2023-3755 | Creativeitem Atlas Business Directory Listing filter_listings cross site scripting | Creativeitem | Atlas Business Directory Listing | Low | 3.5 | 2023-07-19 03:31:04 | Deep Dive |
| CVE-2023-1897 | CVE-2023-1897 | Atlas Copco | Power Focus | Critical | 9.4 | 2023-06-12 19:18:57 | Deep Dive |
| CVE-2023-1898 | CVE-2023-1898 | Atlas Copco | Power Focus | Critical | 9.4 | 2023-06-12 19:16:41 | Deep Dive |
| CVE-2023-1899 | CVE-2023-1899 | Atlas Copco | Power Focus | Critical | 9.4 | 2023-06-12 19:13:52 | Deep Dive |
| CVE-2022-27856 | WordPress Export All URLs Plugin <= 4.1 is vulnerable to Cross Site Scripting (XSS) | Atlas Gondal | Export All URLs | Low | 3.4 | 2023-05-10 10:28:08 | Deep Dive |