Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Site Reviews — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in Site Reviews, with AI-generated Chinese analysis, references, and POCs.

This page provides a comprehensive aggregation of vulnerabilities affecting Site Reviews, categorized by weakness type and associated tags. The content collected here encompasses a wide variety of security issues, including but not limited to cross-site scripting, SQL injection, and privilege escalation flaws found within the Site Reviews plugin ecosystem. This database covers vulnerabilities reported and disclosed from the inception of the product through the most recent months, ensuring a historical perspective on security trends and remediation efforts for this specific software. By navigating this aggregation, users can effectively track vendor advisories to stay informed about critical patches and security updates released by the developers. Additionally, visitors can gain a deeper understanding of specific weakness classes by analyzing how they manifest across different versions and configurations of the product. This resource also allows stakeholders to look up a product’s vulnerability history, providing insights into the frequency and severity of past security incidents. This information is essential for developers, security analysts, and site administrators who need to assess risk levels and prioritize maintenance tasks. The goal is to offer a transparent, centralized view of the security posture of Site Reviews, facilitating better decision-making regarding plugin installation, updates, and overall site hygiene. Whether you are investigating a specific flaw or monitoring general trend lines, this page serves as a foundational reference for understanding the security landscape surrounding Site Reviews.

Vendor: Gemini Labs

CVE ID Title CVSS Severity Published
CVE-2026-73382 WordPress Site Reviews plugin <= 8.2.0 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2026-08-18
CVE-2026-57318 WordPress Site Reviews plugin <= 8.0.11 - Sensitive Data Exposure vulnerability CWE-201 6.5 Medium 2026-06-26
CVE-2025-1232 Site Reviews < 7.2.5 - Unauthenticated Stored XSS 6.1 - 2025-03-19
CVE-2023-27625 WordPress Site Reviews plugin <= 6.5.0 - Broken Access Control vulnerability CWE-862 4.3 Medium 2024-12-09
CVE-2023-49832 WordPress Site Reviews plugin <= 6.10.2 - Broken Access Control vulnerability CWE-862 5.3 Medium 2024-12-09
CVE-2024-3050 Site Reviews < 7.0.0 - IP Spoofing 7.5AI High AI 2024-05-29
CVE-2024-29095 WordPress Site Reviews plugin <= 6.11.6 - Cross Site Scripting (XSS) vulnerability CWE-79 5.9 Medium 2024-03-19
CVE-2024-2293 Site Reviews <= 6.11.4 - Authenticated(Subscriber+) Stored Cross-Site Scripting via display name CWE-79 6.4 Medium 2024-03-13
CVE-2022-46801 WordPress Site Reviews Plugin <= 6.2.0 is vulnerable to CSV Injection CWE-1236 6.1 Medium 2023-11-07
CVE-2023-27612 WordPress Site Reviews Plugin <= 6.5.1 is vulnerable to Cross Site Scripting (XSS) CWE-79 6.5 Medium 2023-06-22
CVE-2023-27629 WordPress Site Reviews Plugin <= 6.5.1 is vulnerable to Cross Site Scripting (XSS) CWE-79 6.5 Medium 2023-06-22
CVE-2023-1525 Site Reviews < 6.7.1 - Admin+ Stored XSS 4.8 - 2023-05-02
CVE-2021-24973 Site Reviews < 5.17.3 - Unauthenticated Stored Cross-Site Scripting CWE-79 6.1 - 2022-01-03
CVE-2021-24603 Site Reviews < 5.13.1 - Authenticated Stored XSS CWE-79 5.4 - 2021-09-06
CVE-2018-0603 WordPress Site Reviews 跨站脚本漏洞 6.1 - 2018-06-26

All 15 known CVE vulnerabilities affecting Site Reviews with full Chinese analysis, references, and POCs where available.