All 2 CVE vulnerabilities found in WP Promoter, with AI-generated Chinese analysis, references, and POCs.
Vendor: rahulbhangale
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-8906 | WP Promoter <= 1.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting via 'popup_width' Parameter CWE-352 | 6.1 | Medium | 2026-05-27 |
| CVE-2026-9014 | WP Promoter <= 1.3 - Missing Authorization to Unauthenticated Statistics Reset via wpp-reset_stats AJAX Action CWE-862 | 5.3 | Medium | 2026-05-27 |
All 2 known CVE vulnerabilities affecting WP Promoter with full Chinese analysis, references, and POCs where available.