Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Merkulove — Vulnerabilities & Security Advisories 43

Browse all 43 CVE security advisories affecting Merkulove. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Merkulove operates as a specialized provider of cybersecurity solutions, primarily focusing on advanced threat detection and incident response services for enterprise environments. Despite its role in security, the company’s software infrastructure has historically been associated with a significant volume of vulnerabilities, currently totaling forty recorded Common Vulnerabilities and Exposures (CVEs). These security flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, suggesting recurring weaknesses in input validation and access control mechanisms within its deployment architecture. While specific major public breaches directly attributed to Merkulove remain limited in public reporting, the high frequency of disclosed CVEs indicates persistent challenges in maintaining robust code hygiene. This pattern highlights the critical importance of rigorous security testing even for vendors specializing in defensive technologies, as internal vulnerabilities can inadvertently expose client networks to exploitation.

CVE ID Title CVSS Severity Published
CVE-2026-74015 WordPress Readabler plugin < 2.0.18 - SQL Injection vulnerability — Readabler CWE-89 9.3 Critical 2026-08-18
CVE-2026-57783 WordPress Speaker plugin <= 4.1.13 - Cross Site Scripting (XSS) vulnerability — Speaker CWE-79 6.5 Medium 2026-07-13
CVE-2025-69134 WordPress OpenAI Chatbot for WordPress – Helper plugin <= 1.1.4 - Arbitrary Content Deletion vulnerability — OpenAI Chatbot for WordPress – Helper CWE-862 7.5 High 2026-07-02
CVE-2025-66142 WordPress Comparimager for Elementor plugin <= 1.0.1 - Broken Access Control vulnerability — Comparimager for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66141 WordPress Scroller plugin <= 2.0.2 - Broken Access Control vulnerability — Scroller CWE-862 5.4 Medium 2026-01-22
CVE-2025-66143 WordPress Crumber plugin <= 1.0.10 - Broken Access Control vulnerability — Crumber CWE-862 5.4 Medium 2026-01-22
CVE-2025-66138 WordPress Motionger for Elementor plugin <= 2.0.4 - Broken Access Control vulnerability — Motionger for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66136 WordPress Carter for Elementor plugin <= 1.0.2 - Broken Access Control vulnerability — Carter for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66139 WordPress Audier For Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Audier For Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66137 WordPress Searcher for Elementor plugin <= 1.0.3 - Broken Access Control vulnerability — Searcher for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66140 WordPress Uper for Elementor plugin <= 1.0.5 - Broken Access Control vulnerability — Uper for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66135 WordPress Imager for Elementor plugin <= 2.0.4 - Broken Access Control vulnerability — Imager for Elementor CWE-862 5.4 Medium 2026-01-22
CVE-2025-66144 WordPress Worker for Elementor plugin <= 1.0.10 - Broken Access Control vulnerability — Worker for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66145 WordPress Worker for WPBakery plugin <= 1.1.1 - Broken Access Control vulnerability — Worker for WPBakery CWE-862 5.4 Medium 2025-12-31
CVE-2025-66146 WordPress Logger for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Logger for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66148 WordPress Conformer for Elementor plugin <= 1.0.7 - Broken Access Control vulnerability — Conformer for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66149 WordPress UnGrabber plugin <= 3.1.3 - Broken Access Control vulnerability — UnGrabber CWE-862 5.4 Medium 2025-12-31
CVE-2025-66150 WordPress Appender plugin <= 1.1.1 - Broken Access Control vulnerability — Appender CWE-862 5.4 Medium 2025-12-31
CVE-2025-66151 WordPress Countdowner for Elementor plugin <= 1.0.4 - Broken Access Control vulnerability — Countdowner for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66152 WordPress Criptopayer for Elementor plugin <= 1.0.1 - Broken Access Control vulnerability — Criptopayer for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66153 WordPress Headinger for Elementor plugin <= 1.1.4 - Broken Access Control vulnerability — Headinger for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66154 WordPress Couponer for Elementor plugin <= 1.1.7 - Broken Access Control vulnerability — Couponer for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66155 WordPress Questionar for Elementor plugin <= 1.1.7 - Broken Access Control vulnerability — Questionar for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66156 WordPress Watcher for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Watcher for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66157 WordPress Sliper for Elementor plugin <= 1.0.10 - Broken Access Control vulnerability — Sliper for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66158 WordPress Gmaper for Elementor plugin <= 1.0.9 - Broken Access Control vulnerability — Gmaper for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66159 WordPress Walker for Elementor plugin <= 1.1.6 - Broken Access Control vulnerability — Walker for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-66160 WordPress Select Graphist for Elementor Graphist for Elementor plugin <= 1.2.10 - Broken Access Control vulnerability — Select Graphist for Elementor Graphist for Elementor CWE-862 5.4 Medium 2025-12-31
CVE-2025-68087 WordPress Modalier for Elementor plugin <= 1.0.6 - Broken Access Control vulnerability — Modalier for Elementor CWE-862 5.4 Medium 2025-12-16
CVE-2025-68085 WordPress Buttoner for Elementor plugin <= 1.0.6 - Settings Change vulnerability — Buttoner for Elementor CWE-862 5.4 Medium 2025-12-16

This page lists every published CVE security advisory associated with Merkulove. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.