All 4 CVE vulnerabilities found in Blog Designer PRO, with AI-generated Chinese analysis, references, and POCs.
Vendor: solwin
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-58711 | WordPress Blog Designer PRO plugin <= 3.4.8 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2025-10-29 |
| CVE-2025-47694 | WordPress Blog Designer PRO plugin <= 3.4.7 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 | 7.1 | High | 2025-09-09 |
| CVE-2025-47695 | WordPress Blog Designer PRO plugin <= 3.4.7 - Authenticated Non-Arbitrary Local File Inclusion vulnerability CWE-98 | 7.5 | High | 2025-09-09 |
| CVE-2025-47696 | WordPress Blog Designer PRO plugin <= 3.4.7 - Unauthenticated Non-Arbitrary Local File Inclusion vulnerability CWE-98 | 8.1 | High | 2025-08-31 |
All 4 known CVE vulnerabilities affecting Blog Designer PRO with full Chinese analysis, references, and POCs where available.