All 5 CVE vulnerabilities found in WPGuppy, with AI-generated Chinese analysis, references, and POCs.
Vendor: AmentoTech Private Limited
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-49910 | WordPress WPGuppy plugin <= 1.1.4 - Broken Access Control vulnerability CWE-862 | 9.1AI | CriticalAI | 2025-10-22 |
| CVE-2025-30775 | WordPress WPGuppy plugin <= 1.1.3 - SQL Injection vulnerability CWE-89 | 8.5 | High | 2025-03-27 |
| CVE-2025-24643 | WordPress WPGuppy plugin <= 1.1.0 - Broken Authentication vulnerability CWE-862 | 8.2 | - | 2025-02-03 |
| CVE-2024-49222 | WordPress WPGuppy plugin <= 1.1.0 - PHP Object Injection vulnerability CWE-502 | 9.8 | Critical | 2025-01-07 |
| CVE-2024-56280 | WordPress WPGuppy plugin <= 1.1.0 - Privilege Escalation vulnerability CWE-266 | 8.8 | High | 2025-01-07 |
All 5 known CVE vulnerabilities affecting WPGuppy with full Chinese analysis, references, and POCs where available.