All 3 CVE vulnerabilities found in BP Profile Shortcodes Extra, with AI-generated Chinese analysis, references, and POCs.
Vendor: Venutius
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-22817 | WordPress BP Profile Shortcodes Extra plugin <= 2.6.0 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2025-01-09 |
| CVE-2024-11732 | BP Profile Shortcodes Extra <= 2.6.0 - Authenticated (Contributor+) SQL Injection via tab Parameter CWE-89 | 6.5 | Medium | 2024-12-03 |
| CVE-2023-47815 | WordPress BP Profile Shortcodes Extra Plugin <= 2.5.2 is vulnerable to Cross Site Scripting (XSS) CWE-79 | 6.5 | Medium | 2023-11-22 |
All 3 known CVE vulnerabilities affecting BP Profile Shortcodes Extra with full Chinese analysis, references, and POCs where available.