| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2018-25247 | MyBB Like Plugin 3.0.0 Cross-Site Scripting via User Profiles | MyBB | MyBB Like Plugin | Medium | 6.1 | 2026-04-04 13:51:12 | Deep Dive |
| CVE-2026-32428 | WordPress Popup Like box plugin <= 3.7.7 - Broken Access Control vulnerability | Ays Pro | Popup Like box | 中危 | - | 2026-03-13 11:42:18 | Deep Dive |
| CVE-2026-2358 | WP ULike <= 5.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attribute | alimir | WP ULike – Like & Dislike Buttons for Engagement and Feedback | Medium | 6.4 | 2026-03-11 05:27:17 | Deep Dive |
| CVE-2025-14130 | Post Like Dislike <= 1.0 - Reflected Cross-Site Scripting via $_SERVER['PHP_SELF'] | cuvixsystem | Post Like Dislike | Medium | 6.1 | 2026-01-07 09:20:57 | Deep Dive |
| CVE-2025-63022 | WordPress Simple Like Page plugin <= 1.5.3 - Broken Access Control vulnerability | topdevs.net | Simple Like Page | Medium | 5.3 | 2025-12-31 15:06:38 | Deep Dive |
| CVE-2025-14129 | Like DisLike Voting <= 1.0.1 - Reflected Cross-Site Scripting via $_SERVER['PHP_SELF'] | wasiul99 | Like DisLike Voting | Medium | 6.1 | 2025-12-12 03:20:42 | Deep Dive |
| CVE-2025-12404 | Like-it <= 2.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting | nikolayyordanov | Like-it | Medium | 6.1 | 2025-11-18 08:27:33 | Deep Dive |
| CVE-2025-10293 | Keyy Two Factor Authentication (like Clef) <= 1.2.3 - Authenticated (Subscriber+) Privilege Escalation via Account Takeover | nexist | Keyy Two Factor Authentication (like Clef) | High | 8.8 | 2025-10-15 08:25:50 | Deep Dive |
| CVE-2025-6067 | Easy Social Feed – Social Photos Gallery – Post Feed – Like Box <= 6.6.7 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting | sjaved | Easy Social Feed – Social Photos Gallery and Post Feed for WordPress | Medium | 6.4 | 2025-09-06 01:47:27 | Deep Dive |
| CVE-2025-7685 | Like & Share My Site <= 0.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting | sflack | Like & Share My Site | Medium | 6.1 | 2025-07-22 09:22:44 | Deep Dive |
| CVE-2025-6009 | kiCode111 like-girl ipAddPost.php sql injection | kiCode111 | like-girl | Medium | 4.7 | 2025-06-12 02:31:05 | Deep Dive |
| CVE-2025-6008 | kiCode111 like-girl ImgAddPost.php sql injection | kiCode111 | like-girl | Medium | 4.7 | 2025-06-12 02:00:20 | Deep Dive |
| CVE-2025-6007 | kiCode111 like-girl CopyadminPost.php sql injection | kiCode111 | like-girl | Medium | 4.7 | 2025-06-12 02:00:18 | Deep Dive |
| CVE-2025-6006 | kiCode111 like-girl ImgUpdaPost.php sql injection | kiCode111 | like-girl | Medium | 4.7 | 2025-06-12 01:00:23 | Deep Dive |
| CVE-2025-6005 | kiCode111 like-girl aboutPost.php sql injection | kiCode111 | like-girl | Medium | 4.7 | 2025-06-12 01:00:20 | Deep Dive |
| CVE-2025-31443 | WordPress KK I Like It plugin <= 1.7.5.3 - CSRF to Stored XSS vulnerability | Krzysztof Furtak | KK I Like It | High | 7.1 | 2025-03-28 11:54:17 | Deep Dive |
| CVE-2025-25115 | WordPress Like dislike plus counter plugin <= 1.0 - Cross Site Scripting (XSS) vulnerability | Zeshan Abdullah | Like dislike plus counter | Medium | 6.5 | 2025-03-03 13:30:24 | Deep Dive |
| CVE-2025-23814 | WordPress CRUDLab Like Box Plugin <= 2.0.9 - Reflected Cross Site Scripting (XSS) vulnerability | CRUDLab | CRUDLab Like Box | High | 7.1 | 2025-03-03 13:30:19 | Deep Dive |
| CVE-2024-11226 | FireCask Like & Share Button <= 1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via width Parameter | alexmoss | FireCask Like & Share Button | Medium | 6.4 | 2025-01-21 11:09:47 | Deep Dive |
| CVE-2024-54424 | WordPress Like in Vk.com plugin <= 0.5.2 - CSRF to Stored Cross-Site Scripting vulnerability | ilya_compman | Like in Vk.com | High | 7.1 | 2024-12-16 14:13:50 | Deep Dive |