All 33 CVE vulnerabilities found in wordpress, with AI-generated Chinese analysis, references, and POCs.
This page aggregates vulnerability data for WordPress, a widely used web content management system developed by the WordPress open-source project. It collects known security flaws affecting WordPress core, official plugins, and themes, covering advisories published over the past several years. The dataset includes various weakness types such as cross-site scripting, remote code execution, and authentication bypasses. Readers can use this resource to track vendor-published security advisories, analyze the prevalence of specific weakness classes within the ecosystem, and review the historical vulnerability trends for the WordPress platform. The page does not focus on individual CVE IDs but rather presents a consolidated view of reported issues to help security teams and developers understand the overall risk profile of WordPress deployments.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2020-11027 | Password reset links invalidation issue in WordPress CWE-672 | 6.1 | Medium | 2020-04-30 |
| CVE-2019-16781 | Stored cross-site scripting (XSS) in WordPress block editor CWE-79 | 5.8 | Medium | 2019-12-26 |
| CVE-2019-16780 | Stored cross-site scripting (XSS) in WordPress block editor CWE-79 | 5.8 | Medium | 2019-12-26 |
All 33 known CVE vulnerabilities affecting wordpress with full Chinese analysis, references, and POCs where available.