Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Passster — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in Passster, with AI-generated Chinese analysis, references, and POCs.

Passster is a product by Passster that has been associated with cross-site scripting vulnerabilities under the CWE-79 weakness classification. This page aggregates security advisories and vulnerability records specifically for Passster, covering reported issues from its initial release through the most recent updates. Readers can use this aggregation to track the vendor's advisory history, analyze the prevalence of a specific weakness class in this product, and review the complete vulnerability timeline for Passster. The collection includes disclosed security flaws, allowing stakeholders to assess risk exposure over time without scanning individual bulletins.

Vendor: Unknown

CVE ID Title CVSS Severity Published
CVE-2026-62114 WordPress Passster plugin <= 4.3.13 - Broken Access Control vulnerability CWE-862 5.3 Medium 2026-09-11
CVE-2025-15490 Passster < 4.2.26 - Global Protection Bypass 5.3 Medium 2026-09-02
CVE-2025-15489 Passster < 4.2.24 - Password Protection Bypass 5.3 Medium 2026-09-02
CVE-2026-17559 Content Protector (Passster) < 4.3.9 - Unauthenticated Protected Content Disclosure via REST Path Allowlist Bypass 5.3 Medium 2026-08-21
CVE-2025-15674 Content Protector (Passster) < 4.3.7 - Contributor+ Protected Content Disclosure via Core REST API 2.7 Low 2026-08-06
CVE-2026-16604 Content Protector (Passster) < 4.3.6 - Unauthenticated Protected Content Disclosure via Content-Lock Block data-content Attribute - - 2026-08-05
CVE-2026-16603 Content Protector (Passster) < 4.3.6 - Unauthenticated Category-Locked Content Disclosure via Core REST API - - 2026-08-05
CVE-2026-16602 Content Protector (Passster) < 4.3.6 - Unauthenticated Non-Public Post Content Disclosure via Captcha REST Endpoint - - 2026-08-05
CVE-2026-25036 WordPress Passster plugin <= 4.2.25 - Broken Access Control vulnerability CWE-862 6.5 Medium 2026-02-03
CVE-2025-64218 WordPress Passster plugin <= 4.2.19 - Sensitive Data Exposure vulnerability CWE-201 7.5 High 2025-12-18
CVE-2025-57926 WordPress Passster Plugin <= 4.2.18 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium 2025-09-22
CVE-2021-24837 Passster < 3.5.5.8 - Contributor+ Stored Cross-Site Scripting 5.4 - 2023-01-23
CVE-2021-24881 Passster < 3.5.5.9 - Protection Bypass & Arbitrary Post Access 7.5 - 2023-01-23
CVE-2022-3206 Passster < 3.5.5.5.2 - Insecure Storage of Password 7.5 - 2022-10-17

All 14 known CVE vulnerabilities affecting Passster with full Chinese analysis, references, and POCs where available.