Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

wpecommerce — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting wpecommerce. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Wpecommerce serves as a WordPress plugin enabling e-commerce functionality for websites, allowing businesses to manage products, payments, and transactions. Historically, it has been susceptible to various vulnerability classes including remote code execution, cross-site scripting, and privilege escalation, often stemming from insufficient input validation and improper access controls. While no major public security incidents have been widely documented, its three recorded CVEs highlight ongoing security concerns. The plugin's integration with WordPress core and third-party payment systems creates a complex attack surface requiring regular security updates and careful configuration to mitigate potential risks.

Found 1 results / 3 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2025-22826 WordPress Sell Digital Downloads plugin <= 2.2.7 - Cross Site Scripting (XSS) vulnerability — Sell Digital Downloads CWE-79 6.5 Medium 2025-01-09

This page lists every published CVE security advisory associated with wpecommerce. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.