All 4 CVE vulnerabilities found in Category Icon, with AI-generated Chinese analysis, references, and POCs.
Vendor: pixelgrade
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-68525 | WordPress Category Icon plugin <= 1.0.2 - Cross Site Scripting (XSS) vulnerability CWE-79 | 5.9 | Medium | 2025-12-24 |
| CVE-2025-31039 | WordPress Category Icon plugin <= 1.0.3 - XML External Entity (XXE) vulnerability CWE-611 | 9.1 | Critical | 2025-06-09 |
| CVE-2025-31825 | WordPress Category Icon plugin <= 1.0.1 - Arbitrary File Download vulnerability CWE-22 | 4.9 | Medium | 2025-04-03 |
| CVE-2024-8915 | Category Icon <= 1.0.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload CWE-79 | 6.4 | Medium | 2024-10-12 |
All 4 known CVE vulnerabilities affecting Category Icon with full Chinese analysis, references, and POCs where available.