All 5 CVE vulnerabilities found in OceanWP, with AI-generated Chinese analysis, references, and POCs.
Vendor: oceanwp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-8944 | OceanWP < 4.1.2 - Subscriber+ Limited Option Update | 4.3AI | MediumAI | 2025-09-05 |
| CVE-2025-8891 | OceanWP <= 4.0.9 - 4.1.1 - Cross-Site Request Forgery to Ocean Extra Plugin Installation CWE-352 | 4.3 | Medium | 2025-08-13 |
| CVE-2025-5524 | OceanWP <= 4.0.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Select HTML Tag CWE-79 | 4.9 | Medium | 2025-06-19 |
| CVE-2023-23700 | WordPress OceanWP theme <= 3.4.1 - Authenticated Local File Inclusion vulnerability CWE-22 | 7.6 | High | 2024-05-17 |
| CVE-2024-2476 | OceanWP <= 3.5.4 - Missing Authorization to Sensitive Information Exposure via Limited Local File Inclusion CWE-862 | 4.3 | Medium | 2024-03-29 |
All 5 known CVE vulnerabilities affecting OceanWP with full Chinese analysis, references, and POCs where available.