Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

ExpressTech — Vulnerabilities & Security Advisories 36

Browse all 36 CVE security advisories affecting ExpressTech. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ExpressTech operates as a middleware provider specializing in rapid API integration for enterprise logistics and supply chain management systems. Its software architecture, which prioritizes speed over rigorous security validation, has historically exposed numerous flaws, resulting in thirty-six recorded Common Vulnerabilities and Exposures. The most prevalent issues involve remote code execution and cross-site scripting, often stemming from inadequate input sanitization in its public-facing endpoints. Additionally, privilege escalation vulnerabilities have allowed unauthorized users to bypass authentication mechanisms, granting access to sensitive logistical data. While no single catastrophic breach has been publicly attributed to these specific CVEs, the cumulative risk profile suggests systemic weaknesses in access control and session management. Security researchers continue to monitor ExpressTech for patches, noting that the high volume of unresolved issues indicates a lag in addressing critical infrastructure vulnerabilities compared to industry standards.

Found 10 results / 36Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-5797 Quiz and Survey Master (QSM) <= 11.1.0 - Unauthenticated Shortcode Injection Leading to Arbitrary Quiz Result Disclosure via Quiz Answer Text Input Fields — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-74 5.3 Medium2026-04-17
CVE-2026-2412 Quiz and Survey Master (QSM) <= 10.3.5 - Authenticated (Contributor+) SQL Injection via 'merged_question' Parameter — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-89 6.5 Medium2026-03-23
CVE-2025-9637 Quiz and Survey Master (QSM) <= 10.3.1 - Missing Authorization to Unpublished, Private And Password-Protected Quiz Information Disclosure And Image Response Uploads — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-862 6.5 Medium2026-01-06
CVE-2025-9318 Quiz and Survey Master (QSM) <= 10.3.1 - Authenticated (Subscriber+) SQL Injection via `is_linking` Query Parameter — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-89 6.5 Medium2026-01-06
CVE-2025-9294 Quiz And Survey Master <= 10.3.1 - Missing Authorization to Authenticated (Subscriber+) Quiz Results Deletion — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-285 4.3 Medium2026-01-06
CVE-2024-3592 Quiz And Survey Master – Best Quiz, Exam and Survey Plugin for WordPress <= 9.0.1 - Authenticated (Contributor+) SQL Injection — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-89 9.9 Critical2024-06-07
CVE-2023-0292 Quiz And Survey Master <= 8.0.8 - Cross-Site Request Forgery to Arbitrary Media Deletion — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-352 5.4 Medium2023-06-09
CVE-2023-0291 Quiz And Survey Master <= 8.0.8 - Unauthenticated Arbitrary Media Deletion — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-862 7.2 High2023-06-09
CVE-2022-4033 Quiz and Survey Master <= 8.0.4 - Improper Input Validation — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-20 5.3 Medium2022-11-29
CVE-2022-4032 Quiz and Survey Master <= 8.0.4 - Unauthenticated iFrame Injection via Paragraph and Short Answer — Quiz and Survey Master (QSM) – Easy Quiz and Survey MakerCWE-20 7.2 High2022-11-29

This page lists every published CVE security advisory associated with ExpressTech. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.