Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

RedefiningTheWeb — Vulnerabilities & Security Advisories 9

Browse all 9 CVE security advisories affecting RedefiningTheWeb. AI-powered Chinese analysis, POCs, and references for each vulnerability.

RedefiningTheWeb develops web application platforms with a core focus on dynamic content management systems. Historically, their products have been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for their 8 recorded CVEs. The organization has demonstrated inconsistent patch management practices, with several critical vulnerabilities remaining unaddressed for extended periods. While no major public security incidents have been documented, the pattern of recurring vulnerabilities in similar components suggests potential systemic weaknesses in their secure development lifecycle. Their CVE history indicates a need for improved input validation and access control mechanisms across their platform architecture.

CVE ID Title CVSS Severity Published
CVE-2026-7559 Affilia <= 3.3.3 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Status Modification — Affiliate Program & Referral Tracking for WooCommerce & WordPress – Affilia CWE-862 4.3 Medium 2026-07-11
CVE-2025-64231 WordPress WordPress Contact Form 7 PDF, Google Sheet & Database plugin <= 3.0.0 - Arbitrary File Upload vulnerability — WordPress Contact Form 7 PDF, Google Sheet & Database CWE-434 9.9 Critical 2025-12-18
CVE-2025-48342 WordPress Dynamic Pricing & Discounts Lite for WooCommerce plugin <= 2.0.3 - Cross Site Request Forgery (CSRF) vulnerability — Dynamic Pricing & Discounts Lite for WooCommerce CWE-352 5.4 Medium 2025-05-19
CVE-2025-39518 WordPress BMA Lite plugin <= 1.4.2 - SQL Injection vulnerability — BMA Lite CWE-89 7.6 High 2025-04-16
CVE-2025-31850 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 2.1.0 - Cross Site Scripting (XSS) vulnerability — PDF Generator Addon for Elementor Page Builder CWE-79 6.5 Medium 2025-04-01
CVE-2025-24569 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 1.7.5 - Arbitrary File Read vulnerability — PDF Generator Addon for Elementor Page Builder CWE-22 7.5 High 2025-02-03
CVE-2024-9935 PDF Generator Addon for Elementor Page Builder <= 2.0.0 - Unauthenticated Arbitrary File Download — PDF Generator for WordPress Elementor CWE-22 7.5 High 2024-11-16
CVE-2024-50449 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 1.7.4 - Cross Site Scripting (XSS) vulnerability — PDF Generator Addon for Elementor Page Builder CWE-79 6.5 Medium 2024-10-28
CVE-2024-9289 WordPress & WooCommerce Affiliate Program <= 8.4.1 - Authentication Bypass to Account Takeover and Privilege Escalation — WordPress & WooCommerce Affiliate Program CWE-288 9.8 Critical 2024-10-01

This page lists every published CVE security advisory associated with RedefiningTheWeb. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.