All 3 CVE vulnerabilities found in Custom Query Blocks, with AI-generated Chinese analysis, references, and POCs.
Vendor: Ronald Huereca
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-39575 | WordPress Custom Query Blocks plugin <= 5.5.0 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.1AI | MediumAI | 2026-04-08 |
| CVE-2024-38794 | WordPress Custom Query Blocks plugin <= 5.2.0 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2024-11-01 |
| CVE-2024-44059 | WordPress Custom Query Blocks plugin <= 5.3.1 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2024-09-15 |
All 3 known CVE vulnerabilities affecting Custom Query Blocks with full Chinese analysis, references, and POCs where available.