Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

SoftLab — Vulnerabilities & Security Advisories 13

Browse all 13 CVE security advisories affecting SoftLab. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SoftLab develops enterprise software solutions for data management and workflow automation. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and improper access controls. While no major public security incidents have been widely reported, the 13 CVEs on record indicate consistent security challenges across their product lines. Their security posture appears to follow typical industry patterns, with vulnerabilities primarily centered on web application interfaces and authentication mechanisms. The company has addressed issues through patch releases, though the recurrence of similar vulnerability types suggests potential gaps in secure development practices.

CVE ID Title CVSS Severity Published
CVE-2023-32117 WordPress Integrate Google Drive plugin <= 1.1.99 - Unauthenticated Broken Access Control vulnerability — Integrate Google Drive CWE-862 9.8 Critical 2024-12-09
CVE-2023-52177 WordPress Integrate Google Drive plugin <= 1.3.3 - Broken Access Control vulnerability — Integrate Google Drive CWE-862 5.4 Medium 2024-06-12
CVE-2024-34753 WordPress Radio Player plugin <= 2.0.73 - Broken Access Control vulnerability — Radio Player CWE-862 5.3 Medium 2024-06-11
CVE-2024-35661 WordPress Upload Fields for WPForms plugin <= 1.0.2 - Broken Access Control vulnerability — Upload Fields for WPForms CWE-862 5.3 Medium 2024-06-09
CVE-2024-32813 WordPress Integrate Google Drive plugin <= 1.3.9 - Broken Access Control vulnerability — Integrate Google Drive CWE-862 5.3 Medium 2024-06-09
CVE-2024-35670 WordPress Integrate Google Drive plugin <= 1.3.93 - Broken Access Control vulnerability — Integrate Google Drive 5.3 Medium 2024-06-04
CVE-2024-33592 WordPress Radio Player plugin <= 2.0.73 - Server Side Request Forgery (SSRF) vulnerability — Radio Player CWE-918 5.4 Medium 2024-04-25
CVE-2024-32506 WordPress Radio Player plugin <= 2.0.73 - Sensitive Data Exposure vulnerability — Radio Player CWE-200 5.4 Medium 2024-04-17
CVE-2024-29771 WordPress Dracula Dark Mode plugin <= 1.0.8 - Cross Site Scripting (XSS) vulnerability — Dracula Dark Mode - The Revolutionary Dark Mode Plugin For WordPress CWE-79 6.5 Medium 2024-03-27
CVE-2024-29811 WordPress Radio Player plugin <= 2.0.73 - Cross Site Scripting (XSS) vulnerability — Radio Player CWE-79 6.5 Medium 2024-03-27
CVE-2024-2906 WordPress Radio Player plugin <= 2.0.73 - Unauthenticated Broken Access Control vulnerability — Radio Player CWE-862 6.5 Medium 2024-03-26
CVE-2023-49769 WordPress Integrate Google Drive Plugin <= 1.3.4 is vulnerable to Cross Site Request Forgery (CSRF) — Integrate Google Drive CWE-352 4.3 Medium 2023-12-17
CVE-2023-47548 WordPress Integrate Google Drive Plugin <= 1.3.2 is vulnerable to Open Redirection — Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files Into Your WordPress Site CWE-601 4.7 Medium 2023-12-07

This page lists every published CVE security advisory associated with SoftLab. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.