Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Quiz And Survey Master — Vulnerabilities & Security Advisories 19

All 19 CVE vulnerabilities found in Quiz And Survey Master, with AI-generated Chinese analysis, references, and POCs.

This page documents known security weaknesses associated with the Quiz And Survey Master plugin developed by ThemeHigh. It aggregates data regarding various vulnerability types found within this specific WordPress extension, focusing on issues that impact the integrity, availability, or confidentiality of user data and site administration. The content covers a broad spectrum of flaws, including but not limited to cross-site scripting, broken access control, and improper input validation that could allow unauthenticated attackers to execute malicious scripts or manipulate survey results. The time range of collected advisories spans from initial discovery dates through recent patch releases, ensuring a comprehensive historical record of security incidents. Readers can use this resource to track the vendor's response to critical advisories, gain a deeper understanding of common weakness classes prevalent in quiz and survey tools, and look up the specific vulnerability history of the Quiz And Survey Master product. By consolidating these details, the page serves as a centralized reference for security professionals, site administrators, and developers seeking to assess the current risk posture of installations using this plugin. It facilitates informed decision-making regarding updates and mitigation strategies without requiring users to scour multiple disparate sources for patch notes or exploit details. This aggregation aims to provide clarity on the evolution of security issues within the product, highlighting trends in vulnerability discovery and the effectiveness of subsequent remediation efforts over time.

Vendor: ExpressTech

CVE IDTitleCVSSSeverityPublished
CVE-2026-48867 WordPress Quiz And Survey Master plugin <= 11.1.2 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-06-15
CVE-2026-40787 WordPress Quiz And Survey Master plugin <= 11.0.0 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-06-15
CVE-2025-67987 WordPress Quiz And Survey Master plugin <= 10.3.1 - SQL Injection vulnerability CWE-89 8.5 High2026-02-20
CVE-2026-25329 WordPress Quiz And Survey Master plugin <= 10.3.4 - Broken Access Control vulnerability CWE-862 4.3 Medium2026-02-19
CVE-2026-25324 WordPress Quiz And Survey Master plugin <= 10.3.4 - Insecure Direct Object References (IDOR) vulnerability CWE-639 5.3 Medium2026-02-19
CVE-2026-24358 WordPress Quiz And Survey Master plugin <= 10.3.3 - Broken Access Control vulnerability CWE-862 4.3 Medium2026-01-22
CVE-2025-63054 WordPress Quiz And Survey Master plugin <= 10.3.2 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-12-09
CVE-2025-55708 WordPress Quiz And Survey Master Plugin <= 10.2.4 - SQL Injection Vulnerability CWE-89 8.5 High2025-08-14
CVE-2023-37984 WordPress Quiz And Survey Master plugin <= 8.1.10 - Broken Access Control vulnerability CWE-862 4.3 Medium2024-12-13
CVE-2023-51507 WordPress Quiz And Survey Master plugin <= 8.1.16 - Broken Access Control vulnerability CWE-862 5.3 Medium2024-06-14
CVE-2023-28787 WordPress Quiz And Survey Master plugin <= 8.1.4 - Unauthenticated SQL Injection vulnerability CWE-89 9.3 Critical2024-03-26
CVE-2024-27966 WordPress Quiz And Survey Master plugin <= 8.2.2 - Cross Site Scripting (XSS) vulnerability CWE-79 5.9 Medium2024-03-21
CVE-2023-51521 WordPress Quiz And Survey Master plugin <= 8.1.18 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 5.4 Medium2024-03-16
CVE-2023-47834 WordPress Quiz And Survey Master Plugin <= 8.1.13 is vulnerable to Cross Site Scripting (XSS) CWE-79 6.5 Medium2023-11-22
CVE-2023-3575 Quiz And Survey Master < 8.1.11 - Contributor+ Stored XSS 5.4 -2023-08-07
CVE-2022-0182 WordPress plugin跨站脚本漏洞 5.4 -2022-01-17
CVE-2022-0181 WordPress plugin跨站脚本漏洞 6.1 -2022-01-17
CVE-2022-0180 WordPress plugin跨站请求伪造漏洞 8.8 -2022-01-17
CVE-2021-20792 WordPress 插件跨站脚本漏洞 6.1 -2021-08-18

All 19 known CVE vulnerabilities affecting Quiz And Survey Master with full Chinese analysis, references, and POCs where available.