All 2 CVE vulnerabilities found in Woostify, with AI-generated Chinese analysis, references, and POCs.
Vendor: duongancol
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-4805 | Woostify <= 2.5.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Lity.js Library via data-lity Attribute in Custom HTML Block CWE-79 | 6.4 | Medium | 2026-04-28 |
| CVE-2025-60101 | WordPress Woostify Theme <= 2.4.2 - Cross Site Scripting (XSS) Vulnerability CWE-79 | 5.9 | Medium | 2025-09-26 |
All 2 known CVE vulnerabilities affecting Woostify with full Chinese analysis, references, and POCs where available.