Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

100plugins — Vulnerabilities & Security Advisories 3

Browse all 3 CVE security advisories affecting 100plugins. AI-powered Chinese analysis, POCs, and references for each vulnerability.

100plugins is a WordPress plugin marketplace offering third-party extensions to enhance website functionality. Historically, the platform has been associated with multiple critical vulnerabilities, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from insufficient input validation and access controls. With three CVEs documented, these issues have potentially exposed thousands of websites to unauthorized access and data breaches. The plugin ecosystem's security posture has been compromised by inconsistent code reviews and delayed patch cycles, leaving administrators vulnerable to exploitation. While no major public incidents have been widely reported, the recurring nature of these vulnerabilities highlights systemic risks in third-party plugin management.

Top products by 100plugins: Open User Map

This page lists every published CVE security advisory associated with 100plugins. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.