Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

fatcatapps — Vulnerabilities & Security Advisories 19

Browse all 19 CVE security advisories affecting fatcatapps. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Fatcatapps develops mobile applications for iOS and Android platforms, primarily serving businesses with productivity and customer engagement tools. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation and insecure authentication mechanisms. The company has faced scrutiny for delayed patching practices, with multiple CVEs remaining unaddressed for extended periods. In 2022, a critical authentication bypass vulnerability in their flagship product exposed sensitive user data, affecting over 50,000 accounts. Security researchers have noted inconsistent security protocols across their application suite, with newer releases sometimes introducing previously fixed vulnerabilities.

CVE ID Title CVSS Severity Published
CVE-2026-94115 WordPress Easy Pricing Tables plugin <= 4.1.2 - SQL Injection vulnerability — Easy Pricing Tables CWE-89 8.5 High 2026-09-30
CVE-2026-94082 WordPress Quiz Cat plugin <= 3.1.1 - SQL Injection vulnerability — Quiz Cat CWE-89 7.6 High 2026-09-30
CVE-2025-59549 WordPress GetResponse Forms Plugin <= 2.6.0 - Cross Site Scripting (XSS) Vulnerability — GetResponse Forms CWE-79 6.5 Medium 2025-09-22
CVE-2025-26992 WordPress Landing Page Cat plugin <= 1.7.8 - Reflected Cross Site Scripting (XSS) vulnerability — Landing Page Cat CWE-79 7.1 High 2025-04-15
CVE-2025-30877 WordPress Quiz Cat plugin <= 3.0.8 - Broken Access Control vulnerability — Quiz Cat CWE-862 2.7 Low 2025-03-27
CVE-2025-24615 WordPress Analytics Cat Plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability — Analytics Cat CWE-79 7.1 High 2025-02-14
CVE-2025-24576 WordPress Landing Page Cat plugin <= 1.7.7 - Reflected Cross Site Scripting (XSS) vulnerability — Landing Page Cat CWE-79 7.1 High 2025-02-03
CVE-2024-49686 WordPress Landing Page Cat plugin <= 1.7.4 - Broken Access Control vulnerability — Landing Page Cat CWE-862 5.4 Medium 2024-12-31
CVE-2024-12072 Analytics Cat – Google Analytics Made Easy <= 1.1.2 - Reflected Cross-Site Scripting — Analytics Cat – Google Analytics Made Easy CWE-79 6.1 Medium 2024-12-12
CVE-2024-11326 Campaign Monitor Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — Campaign Monitor Forms by Optin Cat CWE-79 6.1 Medium 2024-12-03
CVE-2024-11325 AWeber Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — AWeber Forms by Optin Cat CWE-79 5.2 Medium 2024-12-03
CVE-2024-9226 Landing Page Cat – Coming Soon Page, Maintenance Page & Squeeze Pages <= 1.7.6 - Reflected Cross-Site Scripting — Landing Page Cat – Coming Soon & Maintenance Pages CWE-79 6.1 Medium 2024-11-09
CVE-2024-8323 Pricing Tables WordPress Plugin – Easy Pricing Tables <= 3.2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via fontFamily Attribute — Pricing Table WordPress Plugin – Easy Pricing Tables CWE-79 6.4 Medium 2024-11-06
CVE-2024-8871 Pricing Tables WordPress Plugin – Easy Pricing Tables <= 3.2.5 - Reflected Cross-Site Scripting — Pricing Table WordPress Plugin – Easy Pricing Tables CWE-79 6.1 Medium 2024-10-30
CVE-2024-8870 Forms for Mailchimp by Optin Cat – Grow Your MailChimp List <= 2.5.7 - Reflected Cross-Site Scripting — Forms for Mailchimp by Optin Cat – Grow Your MailChimp List CWE-79 6.1 Medium 2024-10-26
CVE-2024-8740 GetResponse Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — GetResponse Forms by Optin Cat CWE-79 6.1 Medium 2024-10-18
CVE-2024-7489 Forms for Mailchimp by Optin Cat <= 2.5.7 - Authenticated (Editor+) Stored Cross-Site Scripting via Form Color Parameters — Forms for Mailchimp by Optin Cat – Grow Your MailChimp List CWE-79 4.4 Medium 2024-10-12
CVE-2024-8544 Pixel Cat – Conversion Pixel Manager <= 3.0.5 - Reflected Cross-Site Scripting — Pixel Cat – Conversion Pixel Manager CWE-79 6.1 Medium 2024-09-24
CVE-2024-0708 Landing Page Cat – Coming Soon Page, Maintenance Page & Squeeze Pages <= 1.7.2 - Unauthenticated Information Exposure — Landing Page Cat – Coming Soon & Maintenance Pages CWE-200 5.3 Medium 2024-02-15

This page lists every published CVE security advisory associated with fatcatapps. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.