Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

QuantumCloud — Vulnerabilities & Security Advisories 71

Browse all 71 CVE security advisories affecting QuantumCloud. AI-powered Chinese analysis, POCs, and references for each vulnerability.

QuantumCloud operates as a hybrid cloud infrastructure provider, offering scalable computing resources and data storage solutions to enterprise clients. Security audits have identified fifty-two Common Vulnerabilities and Exposures (CVEs) associated with its platform, indicating persistent weaknesses in its software development lifecycle. The majority of these vulnerabilities fall into critical categories, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws. These issues often stem from inadequate input validation and improper access control mechanisms within its web interface and API endpoints. While no widespread data breaches have been publicly confirmed, the high volume of disclosed CVEs suggests a reactive rather than proactive security posture. Recent patches have addressed several critical RCE vectors, yet the recurring nature of these flaws highlights ongoing challenges in maintaining robust defense-in-depth strategies across its distributed architecture.

CVE ID Title CVSS Severity Published
CVE-2025-32297 WordPress Simple Link Directory Pro plugin < 14.8.1 - SQL Injection Vulnerability — Simple Link Directory CWE-89 8.5 High 2025-07-04
CVE-2025-53200 WordPress ChatBot plugin <= 6.7.3 - Broken Access Control Vulnerability — ChatBot CWE-862 4.3 Medium 2025-06-27
CVE-2025-31053 WordPress KBx Pro Ultimate plugin < 8.0.5 - Arbitrary File Deletion Vulnerability — KBx Pro Ultimate CWE-22 7.7 High 2025-05-23
CVE-2025-31918 WordPress Simple Business Directory Pro plugin < 15.6.9 - Privilege Escalation vulnerability — Simple Business Directory Pro CWE-266 9.8 Critical 2025-05-23
CVE-2025-47582 WordPress WPBot Pro Wordpress Chatbot <= 12.7.0 - PHP Object Injection Vulnerability — WPBot Pro Wordpress Chatbot CWE-502 9.8 Critical 2025-05-19
CVE-2025-3812 WPBot Pro Wordpress Chatbot <= 13.6.2 - Authenticated (Subscriber+) Arbitrary File Deletion — WPBot Pro Wordpress Chatbot CWE-73 8.1 High 2025-05-17
CVE-2025-32296 WordPress Simple Link Directory Pro plugin < 14.8.1 - Broken Access Control Vulnerability — Simple Link Directory CWE-862 5.3 Medium 2025-05-16
CVE-2025-32244 WordPress SEO Help plugin <= 6.7.9 - Broken Access Control vulnerability — SEO Help CWE-862 6.5 Medium 2025-04-10
CVE-2025-32675 WordPress SEO Help plugin <= 6.7.9 - Server Side Request Forgery (SSRF) vulnerability — SEO Help CWE-918 6.8 Medium 2025-04-09
CVE-2025-26932 WordPress WPBot plugin <= 6.3.5 - Local File Inclusion vulnerability — ChatBot CWE-98 7.5 High 2025-02-25
CVE-2024-12415 AI Infographic Maker <= 4.9.0 - Unauthenticated Arbitrary Shortcode Execution — AI Infographic Maker CWE-94 6.5 Medium 2025-01-31
CVE-2024-12879 WPBot Pro Wordpress Chatbot <= 13.5.5 - Missing Authorization to Authenticated (Subscriber+) Simple Text Response Creation — WPBot Pro Wordpress Chatbot CWE-862 4.3 Medium 2025-01-22
CVE-2024-13091 WPBot Pro Wordpress Chatbot <= 13.5.4 - Unauthenticated Arbitrary File Upload — WPBot Pro Wordpress Chatbot CWE-434 9.8 Critical 2025-01-21
CVE-2025-22813 WordPress ChatBot Conversational Forms plugin <= 1.4.2 - Cross Site Scripting (XSS) vulnerability — Conversational Forms for ChatBot CWE-79 6.5 Medium 2025-01-09
CVE-2024-56297 WordPress Highlight plugin <= 2.0.2 - Cross Site Scripting (XSS) vulnerability — Highlight CWE-79 5.9 Medium 2025-01-07
CVE-2024-56238 WordPress Floating Action Buttons plugin <= 0.9.1 - Broken Access Control vulnerability — Floating Action Buttons CWE-862 5.3 Medium 2025-01-02
CVE-2024-12417 Simple Link Directory <= 8.4.5 - Unauthenticated Arbitrary Shortcode Execution — Simple Link Directory CWE-94 6.5 Medium 2024-12-13
CVE-2024-12156 AI Content Writer, RSS Feed to Post, Autoblogging SEO Help <= 6.1.3 - Reflected Cross-Site Scripting — QC SEO Help for llms.txt, AI Analytics, AI Content Writer, Subtitle to Article CWE-79 6.1 Medium 2024-12-12
CVE-2024-11928 iChart – Easy Charts and Graphs <= 2.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via width Parameter — iChart – Easy Charts and Graphs CWE-79 6.4 Medium 2024-12-10
CVE-2024-52395 WordPress Floating Buttons for WooCommerce plugin <= 2.8.8 - Broken Access Control vulnerability — Floating Buttons for WooCommerce CWE-862 5.3 Medium 2024-11-19
CVE-2024-6669 AI ChatBot for WordPress – WPBot <= 5.5.7 - Authenticated (Administrator+) Stored Cross-Site Scripting — WPBot – AI ChatBot for Live Support, Lead Generation, AI Services CWE-79 5.5 Medium 2024-07-17
CVE-2024-5858 Infographic Maker iList <= 4.7.4 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Title Update — AI Infographic Maker CWE-862 4.3 Medium 2024-06-15
CVE-2024-0453 AI ChatBot <= 5.3.4 - Missing Authorization via openai_file_delete_callback — WPBot – AI ChatBot for Live Support, Lead Generation, AI Services CWE-284 5.0 Medium 2024-05-22
CVE-2024-0452 AI ChatBot <= 5.3.4 - Missing Authorization via openai_file_upload_callback — WPBot – AI ChatBot for Live Support, Lead Generation, AI Services CWE-284 5.0 Medium 2024-05-22
CVE-2024-0451 AI ChatBot <= 5.3.4 - Missing Authorization via openai_file_list_callback — WPBot – AI ChatBot for Live Support, Lead Generation, AI Services CWE-284 5.0 Medium 2024-05-22
CVE-2024-34380 WordPress ChatBot Conversational Forms plugin <= 1.2.0 - Cross Site Scripting (XSS) vulnerability — Conversational Forms for ChatBot CWE-79 5.9 Medium 2024-05-06
CVE-2024-32696 WordPress AI Infographic Maker OpenAI plugin <= 4.6.6 - Cross Site Scripting (XSS) vulnerability — Infographic Maker – iList CWE-79 6.5 Medium 2024-04-22
CVE-2024-22309 WordPress ChatBot Plugin <= 5.1.0 is vulnerable to PHP Object Injection — ChatBot with AI CWE-502 8.7 High 2024-01-24
CVE-2023-48741 WordPress ChatBot Plugin <= 4.7.8 is vulnerable to SQL Injection — AI ChatBot CWE-89 7.6 High 2023-12-19
CVE-2023-5606 WordPress Plugin ChatBot 跨站脚本漏洞 — AI ChatBot 4.4 Medium 2023-11-02

This page lists every published CVE security advisory associated with QuantumCloud. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.