Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Link Library — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in Link Library, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation resource for the Link Library product, categorized under general software weaknesses and tagged for comprehensive security tracking. It collects a wide spectrum of vulnerability reports, ranging from critical remote code execution flaws and privilege escalation issues to lesser-known information disclosures and configuration errors. The dataset covers security incidents documented from January 2018 through the present day, ensuring that both legacy and contemporary threats are included in the analysis. Readers can utilize this aggregation to track a vendor's advisories over time, observing patterns in release cycles and patch responsiveness. You can also understand a specific weakness class by examining how it manifests across different versions of the software, providing context on severity and attack vectors. Furthermore, the page allows users to look up a product's vulnerability history, offering a clear timeline of exposures that helps security professionals assess risk and prioritize mitigation efforts. By synthesizing data from multiple sources, this resource removes the fragmentation often found in individual advisory databases, allowing for a holistic view of the security posture associated with Link Library. This consolidated approach supports more effective decision-making for administrators and developers who need to stay informed about emerging threats without manually correlating disparate reports. The information presented here is intended for technical audiences seeking detailed, factual insights into the software's security landscape.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-40779 WordPress Link Library plugin <= 7.8.8 - Arbitrary File Deletion vulnerability CWE-22 7.7 High2026-06-15
CVE-2025-68600 WordPress Link Library plugin <= 7.8.7 - Server Side Request Forgery (SSRF) vulnerability CWE-918 4.9 Medium2025-12-24
CVE-2025-46237 WordPress Link Library plugin <= 7.8 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-04-22
CVE-2025-2889 Link Library <= 7.7.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Link Additional Parameters CWE-79 6.4 Medium2025-04-04
CVE-2024-13404 Link Library <= 7.7.2 - Reflected Cross-Site Scripting CWE-79 6.1 Medium2025-01-21
CVE-2024-38711 WordPress Link Library plugin <= 7.7.1 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-07-20
CVE-2024-35687 WordPress Link Library plugin <= 7.6.3 - Reflected Cross-Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-06-08
CVE-2024-4281 Link Library <= 7.6.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via link-library Shortcode CWE-79 6.4 Medium2024-05-08
CVE-2024-2325 Link Library <= 7.6.6 - Reflected Cross-Site Scripting CWE-79 6.1 Medium2024-04-09
CVE-2024-29123 WordPress Link Library plugin <= 7.6 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-19
CVE-2024-1559 Link Library <= 7.6 - Unauthenticated Stored Cross-Site Scripting CWE-79 6.5 Medium2024-02-20
CVE-2024-24875 WordPress Link Library Plugin <= 7.5.13 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 4.3 Medium2024-02-12
CVE-2024-24879 WordPress Link Library Plugin <= 7.5.13 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2024-02-08
CVE-2022-4199 Link Library < 7.4.1 - Admin+ Stored XSS 4.8 -2023-01-16
CVE-2021-25093 Link Library < 7.2.8 - Unauthenticated Arbitrary Links Deletion CWE-862 7.5 -2022-02-01
CVE-2021-25092 Link Library < 7.2.8 - Library Settings Reset via CSRF CWE-352 6.5 -2022-02-01
CVE-2021-25091 Link Library < 7.2.9 - Reflected Cross-Site Scripting CWE-79 6.1 -2022-02-01

All 17 known CVE vulnerabilities affecting Link Library with full Chinese analysis, references, and POCs where available.