Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net, with AI-generated Chinese analysis, references, and POCs.

Vendor: realmag777

CVE IDTitleCVSSSeverityPublished
CVE-2026-1672 BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net <= 1.1.5 - Cross-Site Request Forgery to Product Data Modification CWE-352 6.5 Medium2026-04-08
CVE-2026-1673 BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net <= 1.1.5 - Cross-Site Request Forgery to Taxonomy Term Deletion CWE-352 4.3 Medium2026-04-08
CVE-2024-24834 WordPress BEAR Plugin <= 1.1.4 is vulnerable to Cross Site Scripting (XSS) CWE-79 5.9 Medium2024-02-08
CVE-2023-4941 BEAR <= 1.1.3.3 - Missing Authorization to Product Manipulation CWE-862 4.3 Medium2023-10-20
CVE-2023-4926 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Product Deletion CWE-352 5.4 Medium2023-10-20
CVE-2023-4924 BEAR <= 1.1.3.3 - Missing Authorization to Product Deletion CWE-352 5.4 Medium2023-10-20
CVE-2023-4923 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Product Deletion CWE-352 5.4 Medium2023-10-20
CVE-2023-4935 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Profile Creation CWE-352 4.3 Medium2023-10-20
CVE-2023-4920 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting CWE-352 4.3 Medium2023-10-20
CVE-2023-4937 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Product Manipulation CWE-352 4.3 Medium2023-10-20
CVE-2023-4940 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Product Manipulation CWE-352 4.3 Medium2023-10-20
CVE-2023-4943 BEAR <= 1.1.3.3 - Missing Authorization to Product Manipulation CWE-862 4.3 Medium2023-10-20
CVE-2023-4942 BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Product Manipulation CWE-352 4.3 Medium2023-10-20
CVE-2023-4938 BEAR <= 1.1.3.3 - Missing Authorization to Product Manipulation CWE-862 4.3 Medium2023-10-18

All 14 known CVE vulnerabilities affecting BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net with full Chinese analysis, references, and POCs where available.