Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Ashish Ajani — Vulnerabilities & Security Advisories 11

Browse all 11 CVE security advisories affecting Ashish Ajani. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ashish Ajani focuses on identifying security vulnerabilities in web applications and enterprise systems, with 11 CVEs primarily exposing remote code execution and cross-site scripting flaws. His research often reveals privilege escalation weaknesses in authentication mechanisms and insecure direct object references. While no major public incidents are directly attributed to him, his findings have consistently highlighted critical flaws in popular platforms, prompting vendors to release patches. His work demonstrates a pattern of uncovering both common and novel exploitation vectors, particularly in API implementations and session management systems, contributing significantly to improved security postures across affected organizations.

CVE IDTitleCVSSSeverityPublished
CVE-2026-39654 WordPress WP Simple HTML Sitemap plugin <= 3.8 - Cross Site Scripting (XSS) vulnerability — WP Simple HTML SitemapCWE-79 5.9 Medium2026-04-08
CVE-2025-39521 WordPress Contact Form vCard Generator plugin <= 2.4 - Reflected Cross Site Scripting (XSS) vulnerability — Contact Form vCard GeneratorCWE-79 7.1 High2025-04-17
CVE-2025-32678 WordPress WP Show Stats plugin <= 1.5 - Cross Site Request Forgery (CSRF) vulnerability — WP Show StatsCWE-352 4.3 Medium2025-04-09
CVE-2025-31582 WordPress Contact Form vCard Generator plugin <= 2.4 - Cross Site Scripting (XSS) vulnerability — Contact Form vCard GeneratorCWE-79 7.1 High2025-04-03
CVE-2025-31822 WordPress WordPress Simple HTML Sitemap plugin <= 3.4 - Broken Access Control vulnerability — WP Simple HTML SitemapCWE-862 5.3 Medium2025-04-01
CVE-2025-31583 WordPress WP Copy Media URL plugin <= 2.1 - CSRF to Stored XSS vulnerability — WP Copy Media URLCWE-352 7.1 High2025-03-31
CVE-2025-31410 WordPress WP Church Donation plugin <= 1.7 - Cross Site Request Forgery (CSRF) vulnerability — WP Church DonationCWE-352 4.3 Medium2025-03-31
CVE-2023-49850 WordPress WP Simple HTML Sitemap plugin <= 2.7 - Broken Access Control vulnerability — WP Simple HTML SitemapCWE-862 5.3 Medium2024-12-09
CVE-2024-32574 WordPress WP Simple HTML Sitemap plugin <= 2.8 - Cross Site Scripting (XSS) vulnerability — WP Simple HTML SitemapCWE-79 7.1 High2024-04-18
CVE-2023-46627 WordPress WP Simple HTML Sitemap Plugin <= 2.1 is vulnerable to Cross Site Scripting (XSS) — WordPress Simple HTML SitemapCWE-79 7.1 High2023-11-08
CVE-2023-45067 WordPress WP Simple HTML Sitemap Plugin <= 2.1 is vulnerable to Cross Site Scripting (XSS) — WordPress Simple HTML SitemapCWE-79 6.5 Medium2023-10-18

This page lists every published CVE security advisory associated with Ashish Ajani. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.