Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

ListingPro — Vulnerabilities & Security Advisories 19

All 19 CVE vulnerabilities found in ListingPro, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known vulnerabilities for ListingPro, a digital marketplace platform, focusing on specific weakness types such as cross-site scripting and privilege escalation. It collects security advisories affecting this product, covering reported issues from 2019 to the present. Readers can track the vendor's response to these threats, understand the prevalence of specific weakness classes within ListingPro, and review the product's complete vulnerability history to assess its current security posture. The entries are organized by date and CVSS score, allowing for quick filtering by severity or component. No individual CVE identifiers are listed in the summary, but each entry links to detailed technical reports.

Vendor: CridioStudio

CVE ID Title CVSS Severity Published
CVE-2026-42414 WordPress ListingPro plugin <= 2.9.12 - SQL Injection vulnerability CWE-89 8.5 High 2026-10-06
CVE-2026-65478 WordPress ListingPro plugin <= 2.9.10 - Broken Access Control vulnerability CWE-862 5.4 Medium 2026-07-23
CVE-2026-56046 WordPress ListingPro theme <= 2.9.11 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2026-06-26
CVE-2026-39438 WordPress ListingPro plugin <= 2.9.10 - SQL Injection vulnerability CWE-89 9.3 Critical 2026-06-16
CVE-2026-28122 WordPress ListingPro plugin <= 2.9.8 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2026-03-05
CVE-2025-64376 WordPress ListingPro theme < 2.9.10 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2025-12-18
CVE-2025-64378 WordPress ListingPro theme < 2.9.10 - Broken Access Control vulnerability CWE-862 7.1 High 2025-12-18
CVE-2025-64377 WordPress ListingPro theme < 2.9.10 - Local File Inclusion vulnerability CWE-98 8.1 High 2025-12-18
CVE-2025-63039 WordPress ListingPro theme <= 2.9.9 - Broken Access Control vulnerability CWE-862 6.5 Medium 2025-12-18
CVE-2025-63046 WordPress ListingPro plugin <= 2.9.9 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2025-12-09
CVE-2025-63047 WordPress ListingPro theme <= 2.9.9 - Broken Access Control vulnerability CWE-862 5.3 Medium 2025-12-09
CVE-2025-60103 WordPress ListingPro plugin <= 2.9.8 - Broken Access Control vulnerability CWE-862 5.4 Medium 2025-09-26
CVE-2024-39623 WordPress ListingPro theme <= 2.9.4 - Cross Site Request Forgery (CSRF) to Account Takeover vulnerability CWE-352 8.8 High 2025-01-02
CVE-2024-39622 WordPress ListingPro theme <= 2.9.4 - Unauthenticated SQL Injection vulnerability CWE-89 9.3 Critical 2024-08-29
CVE-2024-39620 WordPress ListingPro plugin <= 2.9.4 - SQL Injection vulnerability CWE-89 8.5 High 2024-08-29
CVE-2024-38795 WordPress ListingPro plugin <= 2.9.4 - Unauthenticated SQL Injection vulnerability CWE-89 9.3 Critical 2024-08-29
CVE-2024-39619 WordPress ListingPro plugin <= 2.9.4 - Unauthenticated Local File Inclusion vulnerability CWE-22 9.0 Critical 2024-08-01
CVE-2024-39621 WordPress ListingPro plugin <= 2.9.4 - Local File Inclusion vulnerability CWE-22 8.0 High 2024-08-01
CVE-2024-39624 WordPress ListingPro theme <= 2.9.4 - Local File Inclusion vulnerability CWE-22 8.5 High 2024-08-01

All 19 known CVE vulnerabilities affecting ListingPro with full Chinese analysis, references, and POCs where available.