All 5 CVE vulnerabilities found in LeadConnector, with AI-generated Chinese analysis, references, and POCs.
Vendor: varunvairavanlc
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-1890 | LeadConnector < 3.0.22 - Unauthenticated Rest Call | 7.5 | - | 2026-03-26 |
| CVE-2026-25441 | WordPress LeadConnector plugin <= 3.0.21 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2026-02-19 |
| CVE-2025-30893 | WordPress LeadConnector plugin <= 3.0.2 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2025-03-27 |
| CVE-2024-34378 | WordPress LeadConnector plugin <= 1.7 - API Broken Access Control vulnerability CWE-862 | 8.6 | High | 2024-05-06 |
| CVE-2024-1371 | LeadConnector <= 1.7 - Missing Authorization to Unauthenticated Arbitrary Post Deletion CWE-862 | 6.5 | Medium | 2024-04-30 |
All 5 known CVE vulnerabilities affecting LeadConnector with full Chinese analysis, references, and POCs where available.