Browse all 4 CVE security advisories affecting MarketingFire. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-8483 | Discussion Board – WordPress Forum Plugin <= 2.5.5 - Authenticated (Subscriber+) Arbitrary Shortcode Execution — Discussion Board – WordPress Forum PluginCWE-94 | 6.3 | Medium | 2025-10-25 |
| CVE-2025-10580 | Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting — Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic WidgetsCWE-79 | 6.4 | Medium | 2025-10-25 |
| CVE-2024-8672 | Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution — Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic WidgetsCWE-94 | 9.9 | Critical | 2024-11-28 |
| CVE-2023-36520 | WordPress Editorial Calendar Plugin <= 3.7.12 is vulnerable to Insecure Direct Object References (IDOR) — Editorial CalendarCWE-639 | 5.4 | Medium | 2023-12-20 |
This page lists every published CVE security advisory associated with MarketingFire. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.