Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

mr2p — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting mr2p. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE ID Title CVSS Severity Published
CVE-2026-3173 Meta Field Block <= 1.5.1 - Insecure Direct Object Reference to Authenticated (Contributor+) Arbitrary User Meta Exposure — Meta Field Block – Display custom fields in the Block Editor without coding CWE-639 6.5 Medium 2026-05-28
CVE-2026-6252 Meta Field Block <= 1.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tagName' Block Attribute — Meta Field Block – Display custom fields in the Block Editor without coding CWE-79 6.4 Medium 2026-05-14
CVE-2024-11098 SVG Block <= 1.1.24 - Authenticated (Administrator+) Stored Cross-Site Scripting via SVG File Upload — SVG Block CWE-79 5.5 Medium 2024-11-19

This page lists every published CVE security advisory associated with mr2p. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.