Browse all 5 CVE security advisories affecting peprodev. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-3921 | PeproDev Ultimate Profile Solutions 1.9.1 - 7.5.2 - Missing Authorization to Limited Unauthenticated Arbitrary User Meta Update via handel_ajax_req Function — PeproDev Ultimate Profile SolutionsCWE-285 | 8.2 | High | 2025-05-07 |
| CVE-2025-3924 | PeproDev Ultimate Profile Solutions 1.9.1 - 7.5.2 - Missing Authorization to Unauthenticated Email Enumeration — PeproDev Ultimate Profile SolutionsCWE-285 | 5.3 | Medium | 2025-05-07 |
| CVE-2025-3844 | PeproDev Ultimate Profile Solutions 1.9.1 - 7.5.2 - Authentication Bypass to Account Takeover — PeproDev Ultimate Profile SolutionsCWE-288 | 9.8 | Critical | 2025-05-07 |
| CVE-2024-13719 | PeproDev Ultimate Invoice <= 2.0.9 - Insecure Direct Object Reference to Unauthenticated Order Information Exposure — PeproDev Ultimate InvoiceCWE-862 | 5.3 | Medium | 2025-02-19 |
| CVE-2024-8873 | PeproDev WooCommerce Receipt Uploader <= 2.6.9 - Reflected Cross-Site Scripting — PeproDev WooCommerce Receipt UploaderCWE-79 | 6.1 | Medium | 2024-11-16 |
This page lists every published CVE security advisory associated with peprodev. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.