CVE Browser

More filters (active)
CVE-2026-15982 CRITICAL

Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit <= 2.8.4 - Unauthenticated Privilege Escalation via 'aiomatic_call_google_ai_f…

CVSS 9.8 EPSS 0.53% Jul 17, 2026
CVE-2026-57719 CRITICAL

WordPress Aimogen Pro plugin <= 2.8.3 - Arbitrary File Upload vulnerability

CVSS 10.0 EPSS 0.52% Jul 13, 2026
CVE-2026-9009 HIGH

Crawlomatic Multipage Scraper Post Generator <= 2.7.2 - Authenticated (Author+) Remote Code Execution via 'callback_raw' Shortcode Attribute

CVSS 8.8 EPSS 0.79% May 28, 2026
CVE-2026-4038 CRITICAL

Aimogen Pro <= 2.7.5 - Unauthenticated Privilege Escalation via Arbitrary Function Call

CVSS 9.8 EPSS 0.53% Mar 20, 2026
CVE-2025-6206 HIGH

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.5.0 - Authenticated (Subscriber+) Arbitrary File Upload

CVSS 7.5 EPSS 0.53% Jun 24, 2025
CVE-2025-49312 HIGH

WordPress Echo RSS Feed Post Generator Plugin for WordPress plugin <= 5.4.8.1 - Reflected Cross Site Scripting (XSS) vulnerability

CVSS 7.1 EPSS 0.33% Jun 17, 2025
CVE-2025-49294 MEDIUM

WordPress Crawlomatic Multisite Scraper Post Generator plugin <= 2.6.8.2 - Sensitive Data Exposure via Log Exposure vulnerability

CVSS 5.3 EPSS 0.36% Jun 6, 2025
CVE-2025-49293 MEDIUM

WordPress Crawlomatic Multisite Scraper Post Generator plugin <= 2.6.8.2 - Broken Access Control Vulnerability

CVSS 4.3 EPSS 0.28% Jun 6, 2025
CVE-2025-4391 CRITICAL

Echo RSS Feed Post Generator <= 5.4.8.1 - Unauthenticated Arbitrary File Upload

CVSS 9.8 EPSS 0.74% May 17, 2025
CVE-2025-4389 CRITICAL

Crawlomatic Multipage Scraper Post Generator <= 2.6.8.1 - Unauthenticated Arbitrary File Upload

CVSS 9.8 EPSS 1.01% May 17, 2025
CVE-2024-13882 HIGH

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.3.8 - Missing Authorization to Authenticated (Contributor+) Arbitrary File Upload

CVSS 8.8 EPSS 0.76% Mar 8, 2025
CVE-2024-13816 MEDIUM

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.3.6 - Missing Authorization to Authenticated (Subscriber+) Multiple Administrator Actions

CVSS 5.4 EPSS 0.24% Mar 8, 2025
CVE-2024-51681 MEDIUM

WordPress WP Pocket URLs plugin <= 1.0.3 - Cross Site Scripting (XSS) vulnerability

CVSS 6.5 EPSS 0.26% Nov 4, 2024
CVE-2024-9265 CRITICAL

Echo RSS Feed Post Generator <= 5.4.6 - Unauthenticated Privilege Escalation

CVSS 9.8 EPSS 0.62% Oct 1, 2024
CVE-2024-5969 MEDIUM

AIomatic - Automatic AI Content Writer <= 2.0.5 - Unauthenticated Arbitrary Email Sending

CVSS 5.8 EPSS 0.35% Jul 27, 2024
CVE-2024-34435 HIGH

WordPress Aiomatic plugin <= 1.9.3 - Broken Access Control vulnerability

CVSS 8.8 EPSS 0.32% Jun 9, 2024
CVE-2024-31290 CRITICAL

WordPress Demo My WordPress plugin <= 1.0.9.1 - Unauthenticated Privilege Escalation vulnerability

CVSS 9.8 EPSS 0.50% May 17, 2024
CVE-2024-25917 HIGH

WordPress WP Setup Wizard plugin <= 1.0.8.1 - Auth. Full Database Download Vulnerability

CVSS 8.8 EPSS 0.64% Apr 25, 2024
CVE-2023-49176 HIGH

WordPress WP Pocket URLs Plugin <= 1.0.2 is vulnerable to Cross Site Scripting (XSS)

CVSS 7.1 EPSS 0.40% Dec 15, 2023

Showing 1 to 19 CVEs · page 1