Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

senols — Vulnerabilities & Security Advisories 6

Browse all 6 CVE security advisories affecting senols. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Senols operates as a web application framework primarily used for building enterprise content management systems. Historically, its vulnerabilities have frequently included remote code execution flaws, cross-site scripting (XSS) issues, and privilege escalation weaknesses, often stemming from insufficient input validation and access control mechanisms. The framework has been associated with multiple security incidents, including several high-impact CVEs allowing attackers to execute arbitrary code or bypass authentication. Security researchers have noted consistent patterns in vulnerability distribution, with many issues traceable to improper sanitization of user inputs and misconfigured default installations.

Found 5 results / 6 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-0429 AI Power: Complete AI Pack <= 1.8.96 - Authenticated (Admin+) PHP Object Injection via wpaicg_export_ai_forms — AI Puffer – Your AI engine for WordPress (formerly AI Power) CWE-502 7.2 High 2025-01-22
CVE-2025-0428 AI Power: Complete AI Pack <= 1.8.96 - Authenticated (Admin+) PHP Object Injection via wpaicg_export_prompts — AI Puffer – Your AI engine for WordPress (formerly AI Power) CWE-502 7.2 High 2025-01-22
CVE-2024-13361 AI Power: Complete AI Pack <= 1.8.96 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Shortcode Execution — AI Puffer – Your AI engine for WordPress (formerly AI Power) CWE-862 6.3 Medium 2025-01-22
CVE-2024-13360 AI Power: Complete AI Pack <= 1.8.96 - Authenticated (Subscriber+) Server-Side Request Forgery — AI Puffer – Your AI engine for WordPress (formerly AI Power) CWE-918 5.4 Medium 2025-01-22
CVE-2024-10392 AI Power: Complete AI Pack <= 1.8.89 - Unauthenticated Arbitrary File Upload — AI Puffer – Your AI engine for WordPress (formerly AI Power) CWE-434 9.8 Critical 2024-10-31

This page lists every published CVE security advisory associated with senols. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.