Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

clavaque — Vulnerabilities & Security Advisories 6

Browse all 6 CVE security advisories affecting clavaque. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Clavaque is a network monitoring tool primarily used for real-time traffic analysis and security event detection. Historically, it has been associated with vulnerabilities including remote code execution, cross-site scripting, and privilege escalation, often stemming from improper input validation and authentication flaws. The tool's architecture has exposed weaknesses in its web interface and API endpoints, allowing unauthorized access in some cases. While no major public incidents have been widely documented, its CVE history suggests consistent issues with access controls and secure coding practices, making proper configuration and patching essential for deployment in security-sensitive environments.

CVE ID Title CVSS Severity Published
CVE-2026-19804 s2Member <= 260814 - Unauthenticated Remote Code Execution via 'first_name' Parameter in PayPal Proxy Return — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-94 8.8 High 2026-09-25
CVE-2026-1994 s2Member <= 260127 - Unauthenticated Privilege Escalation via Account Takeover — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-269 9.8 Critical 2026-02-19
CVE-2025-13732 s2Member <= 251005 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-79 6.4 Medium 2026-02-19
CVE-2024-11376 s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 241216 - Reflected Cross-Site Scripting — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-79 6.1 Medium 2025-02-18
CVE-2024-8326 s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 241114 - Authenticated (Contributor+) Sensitive Information Exposure — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-200 8.8 High 2024-12-17
CVE-2024-0899 s2Member – Best Membership Plugin for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 230815 - Information Exposure — s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions CWE-284 5.3 Medium 2024-04-09

This page lists every published CVE security advisory associated with clavaque. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.