Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

advancedcoding — Vulnerabilities & Security Advisories 10

Browse all 10 CVE security advisories affecting advancedcoding. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Advancedcoding develops enterprise software solutions for data management and workflow automation. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, with nine CVEs documented. Security assessments reveal inconsistent input validation and insufficient access controls in their web applications. While no major public security incidents have been reported, the consistent pattern of vulnerabilities suggests a need for enhanced secure coding practices. Their software handles sensitive data, making proper vulnerability remediation critical for organizations relying on their platforms.

Top products by advancedcoding: Comments – wpDiscuz wpDiscuz
CVE ID Title CVSS Severity Published
CVE-2026-9148 Comments <= 7.6.56 - Unauthenticated Stored Cross-Site Scripting via 'Website' Field — Comments – wpDiscuz CWE-79 7.2 High 2026-07-03
CVE-2025-68997 WordPress wpDiscuz plugin <= 7.6.43 - Insecure Direct Object References (IDOR) vulnerability — wpDiscuz CWE-639 5.3 Medium 2025-12-30
CVE-2025-59591 WordPress wpDiscuz Plugin <= 7.6.33 - Broken Access Control Vulnerability — wpDiscuz CWE-862 4.3 Medium 2025-09-22
CVE-2023-46309 WordPress wpDiscuz plugin <= 7.6.10 - Broken Access Control vulnerability — wpDiscuz CWE-862 5.3 Medium 2025-01-02
CVE-2023-45760 WordPress wpDiscuz plugin <= 7.6.3 - Broken Access Control vulnerability — wpDiscuz CWE-862 4.3 Medium 2025-01-02
CVE-2024-9488 Comments – wpDiscuz <= 7.6.24 - Authentication Bypass via WordPress.com OAuth provider — Comments – wpDiscuz CWE-288 9.8 Critical 2024-10-25
CVE-2024-6704 Comments – wpDiscuz <= 7.6.21 - Unauthenticated HTML Injection — Comments – wpDiscuz CWE-79 5.3 Medium 2024-08-02
CVE-2024-2477 wpDiscuz <= 7.6.15 - Authenticated (Author+) Stored Cross-Site Scripting via Uploaded Image Alternative Text — Comments – wpDiscuz CWE-79 6.4 Medium 2024-04-23
CVE-2023-3869 wpDiscuz <= 7.6.3 - Insecure Direct Object Reference to Comment Rating Increase/Decrease — Comments – wpDiscuz CWE-639 5.3 Medium 2023-10-20
CVE-2023-3998 wpDiscuz <= 7.6.3 - Insecure Direct Object Reference to Post Rating Increase/Decrease — Comments – wpDiscuz CWE-639 5.3 Medium 2023-10-20

This page lists every published CVE security advisory associated with advancedcoding. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.