Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Custom Field Template — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in Custom Field Template, with AI-generated Chinese analysis, references, and POCs.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2025-68607 WordPress Custom Field Template plugin <= 2.7.7 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2025-12-29
CVE-2025-63058 WordPress Custom Field Template plugin <= 2.7.6 - Sensitive Data Exposure vulnerability CWE-497 4.3 Medium2025-12-09
CVE-2024-44062 WordPress Custom Field Template plugin <= 2.6.5 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-09-15
CVE-2024-0653 Custom Field Template <= 2.6.1 - Authenticated (Admin+) Stored Cross-Site Scritping CWE-79 4.4 Medium2024-06-11
CVE-2023-6748 Custom Field Template <= 2.6.1 - Authenticated(Contributor+) Information Exposure CWE-862 4.3 Medium2024-06-11
CVE-2024-0627 Custom Field Template <= 2.6.1 - Authenticated(Constibutor+) Stored Cross-Site Scripting via Custom Field Name CWE-79 6.4 Medium2024-06-11
CVE-2023-6745 Custom Field Template <= 2.6.1 - Authenticated(Contributor+) Stored Cross-Site Scripting via shortcode CWE-79 6.4 Medium2024-06-11
CVE-2024-25919 WordPress Custom Field Template plugin <= 2.6 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-03-15
CVE-2023-38392 WordPress Custom Field Template Plugin <= 2.5.9 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2023-08-07
CVE-2023-22695 WordPress Custom Field Template Plugin <= 2.5.8 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 4.3 Medium2023-07-10
CVE-2020-36742 Custom Field Template <= 2.5.1 - Cross-Site Request Forgery Bypass CWE-352 4.3 Medium2023-07-01
CVE-2022-4324 Custom Field Template < 2.5.8 - Admin+ PHP Object Injection 7.2 -2023-01-02

All 12 known CVE vulnerabilities affecting Custom Field Template with full Chinese analysis, references, and POCs where available.