All 3 CVE vulnerabilities found in LWS Affiliation, with AI-generated Chinese analysis, references, and POCs.
Vendor: LWS
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-57934 | WordPress LWS Affiliation Plugin <= 2.3.6 - Cross Site Request Forgery (CSRF) Vulnerability CWE-352 | 4.3 | Medium | 2025-09-22 |
| CVE-2024-43962 | WordPress LWS Affiliation plugin <= 2.3.4 - Broken Access Control vulnerability CWE-862 | 5.4 | Medium | 2024-11-01 |
| CVE-2023-32297 | WordPress LWS Affiliation plugin <= 2.2.6 - Local File Inclusion vulnerability CWE-22 | 9.0 | Critical | 2024-05-17 |
All 3 known CVE vulnerabilities affecting LWS Affiliation with full Chinese analysis, references, and POCs where available.