| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-39712 | WordPress tagDiv Composer plugin <= 5.4.3 - Arbitrary Shortcode Execution vulnerability | tagDiv | tagDiv Composer | - | - | 2026-04-08 08:30:49 | Deep Dive |
| CVE-2026-39692 | WordPress tagDiv Composer plugin <= 5.4.3 - Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Composer | - | - | 2026-04-08 08:30:45 | Deep Dive |
| CVE-2025-53222 | WordPress tagDiv Opt-In Builder plugin <= 1.7.3 - Reflected Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Opt-In Builder | High | 7.1 | 2026-03-19 08:10:36 | Deep Dive |
| CVE-2025-50001 | WordPress tagDiv Composer plugin <= 5.4.2 - Reflected Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Composer | 高危 | - | 2026-03-19 08:07:40 | Deep Dive |
| CVE-2025-50005 | WordPress tagDiv Composer plugin <= 5.4.2 - Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Composer | Medium | 6.5 | 2026-01-22 16:51:44 | Deep Dive |
| CVE-2025-62032 | WordPress tagDiv Cloud Library plugin < 3.9.2 - Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Cloud Library | 中危 | - | 2025-11-06 15:55:29 | Deep Dive |
| CVE-2025-62031 | WordPress tagDiv Composer plugin <= 5.4.1 - Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Composer | 中危 | - | 2025-11-06 15:55:29 | Deep Dive |
| CVE-2025-62030 | WordPress tagDiv Composer plugin <= 5.4.1 - Cross Site Scripting (XSS) vulnerability | tagDiv | tagDiv Composer | 中危 | - | 2025-11-06 15:55:28 | Deep Dive |
| CVE-2025-2806 | tagDiv Composer <= 5.3 - Reflected Cross-Site Scripting via 'data' | tagDiv | tagDiv Composer | Medium | 6.1 | 2025-05-08 11:23:41 | Deep Dive |
| CVE-2025-3510 | tagDiv Composer <= 5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Shortcodes | tagDiv | tagDiv Composer | Medium | 6.4 | 2025-05-02 03:21:18 | Deep Dive |
| CVE-2025-2890 | tagDiv Opt-In Builder <= 1.7 - Authenticated (Subscriber+) SQL Injection via subscriptionCouponId Parameter | TagDiv | tagDiv Opt-In Builder | Medium | 6.5 | 2025-04-30 08:22:00 | Deep Dive |
| CVE-2024-13645 | TagDiv Composer <= 5.3 - Unauthenticated Arbitrary PHP Object Instantiation | tagDiv | tagDiv Composer | Critical | 9.8 | 2025-04-04 05:22:44 | Deep Dive |
| CVE-2025-1705 | tagDiv Composer <= 5.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting | tagDiv | tagDiv Composer | Medium | 6.1 | 2025-03-28 08:23:44 | Deep Dive |
| CVE-2025-2804 | tagDiv Composer <= 5.3 - Reflected Cross-Site Scripting via 'account_id' and 'account_username' | tagDiv | tagDiv Composer | Medium | 6.1 | 2025-03-28 05:23:45 | Deep Dive |
| CVE-2024-3886 | tagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[] | tagDiv | tagDiv Composer | Medium | 6.1 | 2024-08-31 04:29:20 | Deep Dive |
| CVE-2024-5212 | tagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[] | tagDiv | tagDiv Composer | Medium | 6.1 | 2024-08-31 04:29:19 | Deep Dive |
| CVE-2023-3416 | tagDiv Opt-In Builder <= 1.4.4 - Authenticated (Admin+) SQL Injection | TagDiv | tagDiv Opt-In Builder | High | 7.2 | 2024-08-17 09:38:59 | Deep Dive |
| CVE-2023-3419 | tagDiv Opt-In Builder <= 1.4.4 - Authenticated (Admin+) SQL Injection | TagDiv | tagDiv Opt-In Builder | High | 7.2 | 2024-08-17 09:38:55 | Deep Dive |
| CVE-2024-3813 | tagDiv Composer <= 4.8 - Authenticated (Contributor+) Local File Inclusion via Shortcode | tagDiv | tagDiv Composer | High | 8.8 | 2024-06-15 02:02:00 | Deep Dive |
| CVE-2024-3814 | tagDiv Composer <= 4.8 - Authenticated (Author+) Stored Cross-Site Scripting via Attachment Meta | tagDiv | tagDiv Composer | Medium | 5.5 | 2024-06-15 02:01:59 | Deep Dive |