浏览 13+ 条来自 NVD 与 CNNVD 的 CVE 漏洞,配 AI 中文翻译、AI POC 生成、每日情报;可按厂商、产品、严重等级、CWE 检索。
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-12174 | Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings <= 8.5.2 - Missing Authorization to Authenticated (Subscriber+) Data Export and Slug Update | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | Medium | 6.5 | 2025-11-19 05:45:14 | Deep Dive |
| CVE-2025-10488 | Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings <= 8.4.8 - Authenticated (Subscriber+) Arbitrary File Move | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | High | 8.1 | 2025-10-25 06:49:21 | Deep Dive |
| CVE-2025-2224 | Directorist <= 8.2 - Missing Authorization to Unauthenticated Arbitrary Post Publishing | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | Medium | 5.3 | 2025-03-25 05:22:48 | Deep Dive |
| CVE-2025-1570 | Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings <= 8.1 - Privilege Escalation and Account Takeover via Weak OTP | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | High | 8.1 | 2025-02-28 08:23:18 | Deep Dive |
| CVE-2024-12041 | Directorist – AI-Powered WordPress Business Directory Plugin with Classified Ads Listings <= 8.0.12 - Unauthenticated User Information Exposure | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | Medium | 5.3 | 2025-02-01 05:30:37 | Deep Dive |
| CVE-2024-1322 | Directorist <= 7.8.4 - Missing Authorization to Unauthenticated Settings Change | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | Medium | 5.3 | 2024-02-20 18:56:39 | Deep Dive |
| CVE-2023-41798 | WordPress Directorist Plugin <= 7.7.1 is vulnerable to CSV Injection | wpWax | Directorist – WordPress Business Directory Plugin with Classified Ads Listings | 高危 | - | 2023-11-07 17:19:26 | Deep Dive |
| CVE-2023-1889 | Directorist <= 7.5.4 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary Post Deletion in listing_task | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | Medium | 6.5 | 2023-06-09 05:33:29 | Deep Dive |
| CVE-2023-1888 | Directorist <= 7.5.4 - Authenticated (Subscriber+) Arbitrary User Password Reset to Privilege Escalation | wpwax | Directorist: AI-Powered Business Directory, Listings & Classified Ads | High | 8.8 | 2023-06-09 05:33:09 | Deep Dive |
| CVE-2022-2376 | Directorist < 7.3.1 - Unauthenticated Email Address Disclosure | Unknown | Directorist – WordPress Business Directory Plugin with Classified Ads Listings | 中危 | - | 2022-09-05 12:35:19 | Deep Dive |
| CVE-2022-2377 | Directorist < 7.3.0 - Subscriber+ Arbitrary E-mail Sending | Unknown | Directorist – WordPress Business Directory Plugin with Classified Ads Listings | 中危 | - | 2022-08-22 15:02:09 | Deep Dive |
| CVE-2022-2046 | Directorist - Business Directory Plugin < 7.2.3 - Admin+ Arbitrary File Upload | Unknown | Directorist – WordPress Business Directory Plugin with Classified Ads Listings | 中危 | - | 2022-08-08 13:46:03 | Deep Dive |
| CVE-2021-24981 | Directorist – Business Directory Plugin < 7.0.6.2 - CSRF to Remote File Upload | Unknown | Directorist – Business Directory Plugin | 高危 | - | 2021-12-21 08:45:40 | Deep Dive |