| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-31088 | WordPress AdsPlace'r – Ad Manager, Inserter, AdSense Ads plugin <= 1.1.5 - Cross Site Scripting (XSS) vulnerability | WPShop.ru | AdsPlace'r – Ad Manager, Inserter, AdSense Ads | Medium | 6.5 | 2026-01-06 16:52:54 | Deep Dive |
| CVE-2015-10135 | WPshop 2 – E-Commerce < 1.3.9.6 - Arbitrary File Upload | eoxia | WPshop 2 – E-Commerce | Critical | 9.8 | 2025-07-19 09:23:52 | Deep Dive |
| CVE-2025-3852 | WPshop 2 – E-Commerce 2.0.0 - 2.6.0 - Authenticated (Subscriber+) Privilege Escalation via Account Takeover | eoxia | WPshop 2 – E-Commerce | High | 8.8 | 2025-05-07 01:43:09 | Deep Dive |
| CVE-2025-3853 | WPshop 2 – E-Commerce 2.0.0 - 2.6.0 - Insecure Direct Object Reference to Authenticated (Subscriber+) Arbitrary User Key Generation | eoxia | WPshop 2 – E-Commerce | Medium | 6.5 | 2025-05-07 01:43:06 | Deep Dive |
| CVE-2025-30550 | WordPress CallPhone'r plugin <= 1.1.1 - CSRF to Stored XSS vulnerability | WPShop.ru | CallPhone'r | High | 7.1 | 2025-03-24 13:46:55 | Deep Dive |