All 8 CVE vulnerabilities found in ContentStudio, with AI-generated Chinese analysis, references, and POCs.
Vendor: contentstudio
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-67910 | WordPress Contentstudio plugin <= 1.3.7 - Arbitrary File Upload vulnerability CWE-434 | 9.1 | Critical | 2026-01-08 |
| CVE-2025-12181 | ContentStudio <= 1.3.7 - Authenticated (Author+) Arbitrary File Upload CWE-434 | 8.8 | High | 2025-12-05 |
| CVE-2025-13144 | ContentStudio <= 1.3.7 - Cross-Site Request Forgery to Settings Update CWE-352 | 4.3 | Medium | 2025-12-05 |
| CVE-2025-49990 | WordPress ContentStudio plugin <= 1.3.7 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2025-06-20 |
| CVE-2025-47692 | WordPress ContentStudio plugin <= 1.3.5 - Broken Access Control Vulnerability CWE-862 | 4.3 | Medium | 2025-05-07 |
| CVE-2023-0558 | ContentStudio <= 1.2.5 - Authorization Bypass CWE-639 | 8.2 | High | 2023-01-27 |
| CVE-2023-0557 | ContentStudio <= 1.2.5 - Information Exposure CWE-200 | 7.5 | High | 2023-01-27 |
| CVE-2023-0556 | ContentStudio <= 1.2.5 - Missing Authorization CWE-862 | 9.8 | Critical | 2023-01-27 |
All 8 known CVE vulnerabilities affecting ContentStudio with full Chinese analysis, references, and POCs where available.