All 4 CVE vulnerabilities found in Code Embed, with AI-generated Chinese analysis, references, and POCs.
Vendor: David Artiss
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-2512 | Code Embed <= 2.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Fields CWE-79 | 6.4 | Medium | 2026-03-18 |
| CVE-2024-10814 | Code Embed <= 2.5 - Authenticated (Contributor+) Server-Side Request Forgery CWE-918 | 6.4 | Medium | 2024-11-09 |
| CVE-2024-8804 | Code Embed <= 2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 | 6.4 | Medium | 2024-10-04 |
| CVE-2023-49837 | WordPress embed-code plugin <= 2.3.6 - Denial of Service Attack vulnerability CWE-400 | 5.3AI | MediumAI | 2024-03-21 |
All 4 known CVE vulnerabilities affecting Code Embed with full Chinese analysis, references, and POCs where available.