| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-0902 | PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability | PDF-XChange | PDF-XChange Editor | 低危 | - | 2025-02-11 19:56:41 | Deep Dive |
| CVE-2025-0901 | PDF-XChange Editor Doc Object Out-Of-Bounds Read Remote Code Execution Vulnerability | PDF-XChange | PDF-XChange Editor | 高危 | - | 2025-02-11 19:56:32 | Deep Dive |
| CVE-2025-0899 | PDF-XChange Editor AcroForm Use-After-Free Remote Code Execution Vulnerability | PDF-XChange | PDF-XChange Editor | 高危 | - | 2025-02-11 19:22:59 | Deep Dive |
| CVE-2025-0859 | Post and Page Builder by BoldGrid <= 1.27.6 - Path Traversal to Authenticated (Contributor+) Arbitrary File Read via template_via_url Function | boldgrid | Post and Page Builder by BoldGrid – Visual Drag and Drop Editor | Medium | 6.5 | 2025-02-06 09:21:18 | Deep Dive |
| CVE-2024-13661 | Table Editor <= 1.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | wptableeditor | Table Editor | Medium | 6.4 | 2025-01-30 13:41:56 | Deep Dive |
| CVE-2025-23797 | WordPress WP Options Editor plugin <= 1.1 - CSRF to Privilege Escalation vulnerability | Mike Selander | WP Options Editor | Critical | 9.8 | 2025-01-16 20:07:05 | Deep Dive |
| CVE-2025-22587 | WordPress SEO Bulk Editor plugin <= 1.1.0 - Cross Site Scripting (XSS) vulnerability | Atanas Krachev | SEO Bulk Editor | Medium | 6.5 | 2025-01-15 15:23:38 | Deep Dive |
| CVE-2025-22773 | WordPress Htaccess File Editor <= 1.0.19 - Broken Authentication vulnerability | WP Chill | Htaccess File Editor | 中危 | - | 2025-01-15 15:23:20 | Deep Dive |
| CVE-2024-13245 | CKEditor 4 LTS - WYSIWYG HTML editor - Moderately critical - Cross Site Scripting - SA-CONTRIB-2024-009 | Drupal | CKEditor 4 LTS - WYSIWYG HTML editor | 中危 | - | 2025-01-09 18:51:18 | Deep Dive |
| CVE-2024-12738 | User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor <= 3.12.9 - Unauthenticated Stored Cross-Site Scripting | cozmoslabs | User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor | Medium | 6.1 | 2025-01-07 12:43:40 | Deep Dive |
| CVE-2024-12495 | Bootstrap Blocks for WP Editor v2 <= 2.5.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | virgial | Bootstrap Blocks for WP Editor v2 | Medium | 6.4 | 2025-01-07 06:40:58 | Deep Dive |
| CVE-2024-12293 | User Role Editor <= 4.64.3 - Cross-Site Request Forgery to Privilege Escalation | shinephp | User Role Editor | High | 8.8 | 2024-12-17 08:22:47 | Deep Dive |
| CVE-2024-54249 | WordPress Advanced Options Editor plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Jules Colle | Advanced Options Editor | High | 7.1 | 2024-12-16 15:37:46 | Deep Dive |
| CVE-2024-55973 | WordPress TSB Occasion Editor plugin <= 1.2.1 - SQL Injection vulnerability | rnystrom | TSB Occasion Editor | High | 8.5 | 2024-12-16 14:31:23 | Deep Dive |
| CVE-2024-54236 | WordPress Ni WooCommerce Bulk Product Editor plugin <= 1.4.5 - Reflected Cross Site Scripting (XSS) vulnerability | Anzar Ahmed | Ni WooCommerce Bulk Product Editor | High | 7.1 | 2024-12-13 14:24:30 | Deep Dive |
| CVE-2024-11008 | Members <= 3.2.10 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure | supercleanse | Members – Membership & User Role Editor Plugin | Medium | 5.3 | 2024-12-11 10:57:29 | Deep Dive |
| CVE-2023-47756 | WordPress Welcome Email Editor plugin <= 5.0.6 - Broken Access Control vulnerability | David Vongries | Welcome Email Editor | Medium | 4.3 | 2024-12-09 11:30:53 | Deep Dive |
| CVE-2023-49817 | WordPress Flexible Woocommerce Checkout Field Editor plugin <= 2.0.1 - Broken Access Control vulnerability | heolixfy | Flexible Woocommerce Checkout Field Editor | High | 8.2 | 2024-12-09 11:30:12 | Deep Dive |
| CVE-2024-10178 | Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor <= 3.3.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget | gutentor | Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor | Medium | 6.4 | 2024-12-05 04:23:53 | Deep Dive |
| CVE-2024-10587 | Funnelforms Free <= 3.7.5.1 - Authenticated (Contributor+) PHP Object Injection | funnelforms | Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor – Funnelforms Free | High | 8.8 | 2024-12-04 02:40:25 | Deep Dive |