All 4 CVE vulnerabilities found in UDesign Core, with AI-generated Chinese analysis, references, and POCs.
Vendor: AndonDesign
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-63062 | WordPress UDesign Core plugin <= 4.14.0 - Local File Inclusion vulnerability CWE-98 | 7.5 | High | 2025-12-09 |
| CVE-2025-62051 | WordPress UDesign Core plugin <= 4.14.1 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.1 | - | 2025-11-06 |
| CVE-2025-53234 | WordPress UDesign Core plugin <= 4.14.0 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.1AI | MediumAI | 2025-10-22 |
| CVE-2025-53236 | WordPress UDesign Core plugin <= 4.14.0 - Broken Access Control vulnerability CWE-862 | 9.1AI | CriticalAI | 2025-10-22 |
All 4 known CVE vulnerabilities affecting UDesign Core with full Chinese analysis, references, and POCs where available.