| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-14159 | Secure Copy Content Protection and Content Locking <= 4.9.2 - Cross-Site Request Forgery to Data Export | ays-pro | Secure Copy Content Protection and Content Locking | Medium | 4.3 | 2025-12-12 11:15:50 | Deep Dive |
| CVE-2025-14442 | Secure Copy Content Protection and Content Locking <= 4.9.2 - Unauthenticated Sensitive Information Exposure via Exposed CSV Export File | ays-pro | Secure Copy Content Protection and Content Locking | Medium | 5.3 | 2025-12-12 11:15:49 | Deep Dive |
| CVE-2025-67595 | WordPress Quiz Maker plugin <= 6.7.0.82 - Cross Site Request Forgery (CSRF) vulnerability | Ays Pro | Quiz Maker | Medium | 4.3 | 2025-12-09 14:14:18 | Deep Dive |
| CVE-2025-66529 | WordPress Chartify plugin <= 3.6.3 - Cross Site Request Forgery (CSRF) vulnerability | Ays Pro | Chartify | Medium | 4.3 | 2025-12-09 14:13:54 | Deep Dive |
| CVE-2025-13685 | Photo Gallery by Ays <= 6.4.8 - Cross-Site Request Forgery to Bulk Actions | ays-pro | Photo Gallery by Ays – Responsive Image Gallery | Medium | 4.3 | 2025-12-02 06:40:25 | Deep Dive |
| CVE-2025-13381 | AI ChatBot with ChatGPT and Content Generator by AYS <= 2.7.0 - Missing Authorization to Unauthenticated Media File Uploads | ays-pro | AI ChatBot with ChatGPT and Content Generator by AYS | Medium | 5.3 | 2025-11-27 09:27:50 | Deep Dive |
| CVE-2025-13378 | AI ChatBot with ChatGPT and Content Generator by AYS <= 2.7.0 - Unauthenticated Server-Side Request Forgery via 'pinecone_url' Parameter | ays-pro | AI ChatBot with ChatGPT and Content Generator by AYS | Medium | 6.5 | 2025-11-27 09:27:48 | Deep Dive |
| CVE-2025-12426 | Quiz Maker <= 6.7.0.80 - Unauthenticated Sensitive Information Exposure | ays-pro | Quiz Maker | Medium | 5.3 | 2025-11-19 04:28:19 | Deep Dive |
| CVE-2025-64276 | WordPress Survey Maker plugin <= 5.1.9.4 - Broken Access Control vulnerability | Ays Pro | Survey Maker | 中危 | - | 2025-11-13 09:24:32 | Deep Dive |
| CVE-2025-12620 | Poll Maker – Versus Polls, Anonymous Polls, Image Polls <= 6.0.7 - Authenticated (Administrator+) SQL Injection via `filterbyauthor` Parameter | ays-pro | Poll Maker – Versus Polls, Anonymous Polls, Image Polls | Medium | 4.9 | 2025-11-13 05:30:40 | Deep Dive |
| CVE-2025-12891 | Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Information Exposure | ays-pro | Survey Maker | Medium | 5.3 | 2025-11-13 04:28:01 | Deep Dive |
| CVE-2025-12892 | Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Limited Option Update | ays-pro | Survey Maker | Medium | 5.3 | 2025-11-13 03:27:38 | Deep Dive |
| CVE-2025-62039 | WordPress AI ChatBot with ChatGPT and Content Generator by AYS plugin <= 2.6.6 - Sensitive Data Exposure vulnerability | Ays Pro | AI ChatBot with ChatGPT and Content Generator by AYS | 中危 | - | 2025-11-06 15:55:37 | Deep Dive |
| CVE-2025-57931 | WordPress Popup box plugin <= 5.5.4 - Cross Site Request Forgery (CSRF) vulnerability | Ays Pro | Popup box | Medium | 5.3 | 2025-10-29 04:02:10 | Deep Dive |
| CVE-2025-48095 | WordPress Survey Maker plugin <= 5.1.8.8 - Cross Site Scripting (XSS) vulnerability | Ays Pro | Survey Maker | - | - | 2025-10-22 14:32:07 | Deep Dive |
| CVE-2025-48098 | WordPress Survey Maker plugin <= 5.1.8.8 - Cross Site Scripting (XSS) vulnerability | Ays Pro | Survey Maker | - | - | 2025-10-22 14:32:07 | Deep Dive |
| CVE-2025-11171 | Chartify – WordPress Chart Plugin <= 3.5.9 - Missing Authentication for Administrative Function | ays-pro | Chartify – WordPress Chart Plugin | Medium | 5.3 | 2025-10-08 05:24:49 | Deep Dive |
| CVE-2025-57947 | WordPress Photo Gallery by Ays Plugin <= 6.3.8 - Cross Site Scripting (XSS) Vulnerability | Ays Pro | Photo Gallery by Ays | Medium | 6.5 | 2025-09-22 18:24:54 | Deep Dive |
| CVE-2025-57954 | WordPress Poll Maker Plugin <= 6.0.2 - Cross Site Scripting (XSS) Vulnerability | Ays Pro | Poll Maker | Medium | 6.5 | 2025-09-22 18:24:49 | Deep Dive |
| CVE-2025-58014 | WordPress Quiz Maker Plugin <= 6.7.0.64 - Cross Site Request Forgery (CSRF) Vulnerability | Ays Pro | Quiz Maker | Medium | 4.3 | 2025-09-22 18:24:06 | Deep Dive |