All 2 CVE vulnerabilities found in Unify, with AI-generated Chinese analysis, references, and POCs.
Vendor: codeclouds
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-13529 | Unify <= 3.4.9 - Missing Authorization to Unauthenticated Option Deletion via 'unify_plugin_downgrade' Parameter CWE-862 | 5.3 | Medium | 2026-01-07 |
| CVE-2025-9130 | Unify <= 3.4.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via unify_checkout Shortcode CWE-79 | 6.4 | Medium | 2025-10-03 |
All 2 known CVE vulnerabilities affecting Unify with full Chinese analysis, references, and POCs where available.