All 4 CVE vulnerabilities found in WPComplete, with AI-generated Chinese analysis, references, and POCs.
Vendor: iThemes
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-49906 | WordPress WPComplete plugin <= 2.9.5.3 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2025-10-22 |
| CVE-2025-58974 | WordPress WPComplete Plugin <= 2.9.5.2 - Cross Site Scripting (XSS) Vulnerability CWE-79 | 6.5 | Medium | 2025-09-22 |
| CVE-2025-50046 | WordPress WPComplete plugin <= 2.9.5 - Cross Site Scripting (XSS) Vulnerability CWE-79 | 6.5 | Medium | 2025-06-20 |
| CVE-2022-45825 | WordPress WPComplete Plugin <= 2.9.4 is vulnerable to Cross Site Scripting (XSS) CWE-79 | 7.1 | High | 2023-03-28 |
All 4 known CVE vulnerabilities affecting WPComplete with full Chinese analysis, references, and POCs where available.