Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

漏洞数据库 - AI 增强中文 CVE 平台 与情报

浏览 26+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。

Found 26 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-6443 Essentialplugin Plugins (Various Versions) - Injected Backdoor essentialpluginAccordion and Accordion Slider Critical 9.8 2026-04-17 06:44:49 Deep Dive
CVE-2026-4302 WowOptin: Next-Gen Popup Maker <= 1.4.29 - Unauthenticated Server-Side Request Forgery via 'link' Parameter in REST API wpxpoWowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation High 7.2 2026-03-21 01:24:38 Deep Dive
CVE-2026-3475 Instant Popup Builder <= 1.1.7 - Unauthenticated Arbitrary Shortcode Execution via 'token' Parameter instantpopupbuilderInstant Popup Builder – Powerful Popup Maker for Opt-ins, Email Newsletters & Lead Generation Medium 5.3 2026-03-19 07:34:56 Deep Dive
CVE-2026-1720 WowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation <= 1.4.24 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation wpxpoWowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation High 8.8 2026-03-05 13:24:01 Deep Dive
CVE-2025-9490 Popup Maker <= 1.20.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via title Parameter danieliserPopup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder Medium 6.4 2025-09-26 05:27:21 Deep Dive
CVE-2025-4205 Popup Maker <= 1.20.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via popupID Parameter danieliserPopup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder Medium 6.4 2025-06-03 11:22:26 Deep Dive
CVE-2025-24746 WordPress Popup Maker plugin <= 1.20.2 - Cross Site Scripting (XSS) vulnerability Daniel IserPopup Maker Medium 6.5 2025-01-24 17:25:23 Deep Dive
CVE-2024-12411 WP Ad Guru – Banner ad, Responsive popup, Popup maker, Ad rotator & More <= 2.5.4 - Reflected Cross-Site Scripting onetarekWP Ad Guru – Banner ad, Responsive popup, Popup maker, Ad rotator & More Medium 6.1 2024-12-14 04:23:44 Deep Dive
CVE-2022-45819 WordPress Popup Maker plugin <= 1.17.1 - Broken Access Control vulnerability Daniel IserPopup Maker Low 3.5 2024-12-13 14:22:03 Deep Dive
CVE-2024-10583 Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder <= 1.20.2 - Authenticated (Contributor+) Stored Cross-Site Scripting danieliserPopup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder Medium 5.4 2024-12-12 06:46:34 Deep Dive
CVE-2024-52421 WordPress WP Popup Window Maker plugin <= 2.0 - CSRF to Stored XSS vulnerability wp-buyWP Popup Window Maker High 7.1 2024-11-19 16:32:18 Deep Dive
CVE-2024-47358 WordPress Popup Maker plugin <= 1.19.2 - Broken Access Control vulnerability Daniel IserPopup Maker Medium 5.3 2024-11-01 14:17:04 Deep Dive
CVE-2024-5561 Popup Maker < 1.19.1 - Admin+ Stored XSS UnknownPopup Maker--2024-09-09 06:00:01 Deep Dive
CVE-2024-7054 Popup Maker <= 1.19.0 - Authenticated (Contributor+) Stored Cross-Site Scripting danieliserPopup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder Medium 6.4 2024-08-20 10:58:30 Deep Dive
CVE-2024-34770 WordPress Popup Maker WP plugin <= 1.3.6 - Cross Site Scripting (XSS) vulnerability Popup MakerPopup Maker WP Medium 6.5 2024-06-03 11:13:53 Deep Dive
CVE-2024-3155 Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks <= 2.2.80 - Authenticated (Contributor+) Stored Cross-Site Scripting pickpluginsPost Grid Medium 6.4 2024-05-21 02:32:59 Deep Dive
CVE-2024-0881 Combo Blocks < 2.2.76 - Unauthenticated Password Protected Posts Access UnknownPost Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel--2024-04-11 15:36:31 Deep Dive
CVE-2024-2336 Popup Maker – Popup for opt-ins, lead gen, & more <= 1.18.2 - Authenticated (Contributor+) Stored Cross-Site Scripting danieliserPopup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder Medium 6.4 2024-04-09 18:58:45 Deep Dive
CVE-2023-7072 Post Grid Combo – 36+ Gutenberg Blocks <= 2.2.68 - Information Exposure via get_posts API Endpoint pickpluginsPost Grid High 7.5 2024-03-12 22:32:27 Deep Dive
CVE-2023-6645 Post Grid Combo – 36+ Gutenberg Blocks <= 2.2.64 - Authenticated (Contributor+) Cross-Site Scripting pickpluginsPost Grid Medium 6.4 2024-01-11 08:32:50 Deep Dive