Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

codexpert — Vulnerabilities & Security Advisories 6

Browse all 6 CVE security advisories affecting codexpert. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Codexpert develops specialized code analysis tools for identifying security vulnerabilities in enterprise applications. Historically, their tools have commonly detected remote code execution, cross-site scripting, and privilege escalation vulnerabilities across multiple programming languages. The platform integrates with CI/CD pipelines to provide real-time security feedback. While no major public security incidents have been reported, codexpert's tools have identified over 5 CVEs, demonstrating their effectiveness in uncovering critical flaws. Their approach focuses on automated static analysis with minimal false positives, though they recommend manual verification for complex vulnerabilities. The platform serves development teams and security professionals seeking to integrate security testing throughout the software development lifecycle.

CVE ID Title CVSS Severity Published
CVE-2026-7622 ThumbPress <= 6.2.1 - Missing Authorization to Authenticated (Subscriber+) Plugin Deactivation — ThumbPress – Compress Images, Manage Thumbnails, Detect Image Issues, WebP/AVIF, Lazy Loading, Hotlinking & More CWE-862 4.3 Medium 2026-09-22
CVE-2024-12336 WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.5.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via wf-export-all — WC Affiliate – WooCommerce Affiliate Plugin CWE-862 6.5 Medium 2025-03-15
CVE-2024-12334 WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.4 - Reflected Cross-Site Scripting — WC Affiliate – WooCommerce Affiliate Plugin CWE-79 6.1 Medium 2025-01-26
CVE-2024-5997 Duplica <= 0.6 - Authenticated (Subscriber+) Missing Authorization to Users/Posts Duplicates Creation — Duplica – Duplicate Posts, Pages, Custom Posts or Users CWE-862 4.3 Medium 2024-07-18
CVE-2024-4371 CoDesigner WooCommerce Builder for Elementor – Customize Checkout, Shop, Email, Products & More <= 4.4.1 - Unauthenticated PHP Object Injection — CoDesigner – All in One Elementor WooCommerce Builder CWE-502 9.0 Critical 2024-06-13
CVE-2024-4564 CoDesigner WooCommerce Builder for Elementor – Customize Checkout, Shop, Email, Products & More <= 4.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets — CoDesigner – All in One Elementor WooCommerce Builder CWE-79 6.4 Medium 2024-06-12

This page lists every published CVE security advisory associated with codexpert. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.