All 8 CVE vulnerabilities found in IdeaPush, with AI-generated Chinese analysis, references, and POCs.
Vendor: Martin Gibson
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-24607 | WordPress IdeaPush plugin <= 8.71 - Broken Access Control vulnerability CWE-862 | 9.1 | - | 2025-02-14 |
| CVE-2023-48774 | WordPress IdeaPush plugin < 8.58 - Broken Access Control vulnerability CWE-862 | 5.4 | Medium | 2024-12-09 |
| CVE-2024-11844 | IdeaPush <= 8.71 - Missing Authorization to Board Term Deletion CWE-862 | 4.3 | Medium | 2024-12-03 |
| CVE-2024-49275 | WordPress IdeaPush plugin <= 8.69 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 | 4.3 | Medium | 2024-10-20 |
| CVE-2024-44041 | WordPress IdeaPush plugin <= 8.66 - Cross Site Scripting (XSS) vulnerability CWE-79 | 5.9 | Medium | 2024-10-06 |
| CVE-2024-37265 | WordPress IdeaPush plugin <= 8.60 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2024-07-22 |
| CVE-2024-37461 | WordPress IdeaPush plugin <= 8.65 - Cross Site Scripting (XSS) vulnerability CWE-79 | 7.1 | High | 2024-07-21 |
| CVE-2023-47181 | WordPress IdeaPush Plugin <= 8.52 is vulnerable to Cross Site Scripting (XSS) CWE-79 | 4.8 | - | 2023-11-08 |
All 8 known CVE vulnerabilities affecting IdeaPush with full Chinese analysis, references, and POCs where available.