All 2 CVE vulnerabilities found in mFolio Lite, with AI-generated Chinese analysis, references, and POCs.
Vendor: themelooks
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-31847 | WordPress mFolio Lite plugin <= 1.2.3 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2025-04-01 |
| CVE-2024-9307 | mFolio Lite <= 1.2.1 - Missing Authorization to Authenticated (Author+) File Upload via EXE and SVG Files CWE-434 | 9.9 | Critical | 2024-11-06 |
All 2 known CVE vulnerabilities affecting mFolio Lite with full Chinese analysis, references, and POCs where available.