Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

wordpress-develop — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in wordpress-develop, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability records for the product identified as wordpress-develop, focusing on a specific weakness type and associated security tags. It collects a curated set of security vulnerabilities affecting this software component, covering the period from 2010 through 2024. Here, users can track the vendor’s security advisories, understand the specific weakness class in detail, and review the product’s vulnerability history. The collection is structured to support systematic analysis rather than general browsing, providing a focused view of how this particular product has been impacted by common software flaws over time.

Vendor: WordPress

CVE ID Title CVSS Severity Published
CVE-2024-31211 Remote Code Execution in `WP_HTML_Token` CWE-502 5.5 Medium 2024-04-04
CVE-2024-31210 PHP file upload bypass via Plugin installer CWE-434 7.7 High 2024-04-04
CVE-2022-21662 Stored XSS in WordPress CWE-79 8.0 High 2022-01-06
CVE-2022-21663 Authenticated Object Injection in Multisites in WordPress CWE-74 6.6 Medium 2022-01-06
CVE-2022-21664 SQL injection in WordPress CWE-89 7.4 High 2022-01-06
CVE-2022-21661 SQL injection in WordPress CWE-89 8.0 High 2022-01-06
CVE-2021-39203 Private data disclosure/privilege escalation through the block editor in Wordpress CWE-200 6.8 Medium 2021-09-09
CVE-2021-39202 WordPress 5.8 beta: Stored Cross-Site Scripting (XSS) vulnerability in widget CWE-79 7.6 High 2021-09-09
CVE-2021-39201 Authenticated cross-site scripting (XSS) in WordPress editor CWE-79 7.6 High 2021-09-09
CVE-2021-39200 Information Disclosure in wp_die() via JSONP in wordpress CWE-200 5.3 Medium 2021-09-09
CVE-2021-29450 WordPress Authenticated disclosure of password-protected posts and pages CWE-200 6.5 Medium 2021-04-15
CVE-2021-29447 WordPress Authenticated XXE attack when installation is running PHP 8 CWE-611 7.1 High 2021-04-15
CVE-2020-4047 Authenticated XSS via media attachment page in WordPress CWE-80 6.8 Medium 2020-06-12
CVE-2020-4048 Open redirect in wp_validate_redirect() in WordPress CWE-601 5.7 Medium 2020-06-12
CVE-2020-4049 Authenticated self-XSS via theme uploads in WordPress CWE-80 2.4 Low 2020-06-12
CVE-2020-4050 set-screen-option filter misuse by plugins leading to privilege escalation in WordPress CWE-288 3.5 Low 2020-06-12
CVE-2020-4046 Authenticated XSS through embed block in WordPress CWE-80 5.4 Medium 2020-06-12

All 17 known CVE vulnerabilities affecting wordpress-develop with full Chinese analysis, references, and POCs where available.