All 7 CVE vulnerabilities found in Amelia, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-39487 | WordPress Amelia plugin <= 2.1.1 - SQL Injection vulnerability CWE-89 | 9.8AI | CriticalAI | 2026-04-08 |
| CVE-2026-24963 | WordPress Amelia plugin <= 1.2.38 - Privilege Escalation vulnerability CWE-266 | 8.8 | - | 2026-03-05 |
| CVE-2026-24967 | WordPress Amelia plugin <= 1.2.38 - Broken Access Control vulnerability CWE-862 | 9.1AI | CriticalAI | 2026-02-03 |
| CVE-2025-26965 | WordPress Amelia plugin <= 1.2.16 - Insecure Direct Object References (IDOR) vulnerability CWE-639 | 9.1 | - | 2025-02-25 |
| CVE-2024-22298 | WordPress Amelia plugin <= 1.0.98 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2024-06-10 |
| CVE-2024-31425 | WordPress Amelia plugin <= 1.0.95 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 | 5.4 | Medium | 2024-04-15 |
| CVE-2022-0837 | Amelia < 1.0.48 - Customer+ SMS Service Abuse and Sensitive Data Disclosure | 8.2 | - | 2022-04-04 |
All 7 known CVE vulnerabilities affecting Amelia with full Chinese analysis, references, and POCs where available.