Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Barcode Scanner with Inventory & Order Manager — Vulnerabilities & Security Advisories 11

All 11 CVE vulnerabilities found in Barcode Scanner with Inventory & Order Manager, with AI-generated Chinese analysis, references, and POCs.

Vendor: Dmitry V. (CEO of "UKR Solution")

CVE IDTitleCVSSSeverityPublished
CVE-2025-58972 WordPress Barcode Scanner with Inventory & Order Manager plugin <= 1.10.4 - Path Traversal vulnerability CWE-35 7.5 -2025-11-06
CVE-2024-32589 WordPress Barcode Scanner and Inventory manager plugin <= 1.5.3 - Broken Access Control to XSS vulnerability CWE-862 7.1 High2025-08-31
CVE-2025-54715 WordPress Barcode Scanner with Inventory & Order Manager Plugin <= 1.9.0 - Arbitrary File Download Vulnerability CWE-22 4.9 Medium2025-08-14
CVE-2025-22723 WordPress Barcode Scanner and Inventory manager plugin <= 1.6.7 - Arbitrary File Upload vulnerability CWE-434 9.1 Critical2025-01-21
CVE-2024-54265 WordPress Barcode Scanner and Inventory manager plugin <= 1.6.6 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-12-13
CVE-2024-38708 WordPress Barcode Scanner and Inventory manager plugin <= 1.6.1 - SQL Injection vulnerability CWE-89 8.5 High2024-07-22
CVE-2024-33565 WordPress Barcode Scanner with Inventory & Order Manager plugin <= 1.5.3 - Unauthenticated Broken Access Control vulnerability CWE-862 9.1 Critical2024-06-09
CVE-2024-33567 WordPress Barcode Scanner with Inventory & Order Manager plugin <= 1.5.3 - Unauthenticated Privilege Escalation vulnerability CWE-269 9.8 Critical2024-05-17
CVE-2024-34556 WordPress Barcode Scanner with Inventory & Order Manager plugin <= 1.5.4 - Sensitive Data Exposure via Exported File vulnerability CWE-201 5.3 Medium2024-05-09
CVE-2024-34557 WordPress Barcode Scanner with Inventory & Order Manager plugin <= 1.5.4 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 4.3 Medium2024-05-09
CVE-2024-27998 WordPress Barcode Scanner and Inventory manager plugin <= 1.5.3 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-19

All 11 known CVE vulnerabilities affecting Barcode Scanner with Inventory & Order Manager with full Chinese analysis, references, and POCs where available.