Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Inisev — Vulnerabilities & Security Advisories 13

Browse all 13 CVE security advisories affecting Inisev. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Inisev is a software platform primarily used for enterprise content management and workflow automation. Historically, it has been vulnerable to multiple remote code execution flaws, cross-site scripting attacks, and privilege escalation vulnerabilities, accounting for its 13 recorded CVEs. The platform's complex architecture and extensive plugin ecosystem have contributed to recurring security issues, particularly in input validation and access control. While no major public security incidents have been widely documented, the consistent pattern of vulnerabilities suggests potential risks in environments where the software handles sensitive data or integrates with critical systems. Organizations implementing Inisev should prioritize timely patching and harden configurations against common exploitation vectors.

CVE IDTitleCVSSSeverityPublished
CVE-2025-14944 Backup Migration <= 2.0.0 - Missing Authorization to Unauthenticated Backup Upload to Offline Storage — BackupBliss – Backup & Migration with Free Cloud StorageCWE-862 5.3 Medium2026-04-07
CVE-2024-10932 Backup Migration <= 1.4.6 - Unauthenticated PHP Object Injection via 'recursive_unserialize_replace' — BackupBliss – Backup & Migration with Free Cloud StorageCWE-502 8.8 High2025-01-04
CVE-2023-34009 WordPress Social Media Share Buttons & Social Sharing Icons plugin <= 2.8.1 - Broken Access Control + CSRF — Social Media & Share IconsCWE-862 4.3 Medium2024-12-13
CVE-2024-37552 WordPress Social Media Share Buttons & Social Sharing Icons plugin <= 2.9.1 - Cross Site Scripting (XSS) vulnerability — Social Media & Share IconsCWE-79 5.9 Medium2024-07-21
CVE-2024-32686 WordPress Backup Migration plugin <= 1.4.3 - Sensitive Data Exposure via Log vulnerability — Backup MigrationCWE-532 5.3 Medium2024-04-18
CVE-2023-6266 Backup Migration <= 1.3.6 - Unauthenticated Arbitrary Backup Download to Sensitive Information Exposure — BackupBliss – Backup & Migration with Free Cloud StorageCWE-200 7.5 High2024-01-11
CVE-2023-7002 Backup Migration <= 1.3.9 - Authenticated (Admin+) OS Command Injection via url — BackupBliss – Backup & Migration with Free Cloud StorageCWE-78 7.2 High2023-12-23
CVE-2023-6972 Backup Migration <= 1.3.9 - Unauthenticated Path Traversal to Arbitrary File Deletion — BackupBliss – Backup & Migration with Free Cloud StorageCWE-22 9.8 Critical2023-12-23
CVE-2023-6553 Backup Migration <= 1.3.7 - Unauthenticated Remote Code Execution — BackupBliss – Backup & Migration with Free Cloud StorageCWE-94 9.8 Critical2023-12-15
CVE-2023-5070 Social Media Share Buttons & Social Sharing Icons <= 2.8.5 - Information Exposure — Social Media Share Buttons & Social Sharing IconsCWE-200 6.5 Medium2023-10-20
CVE-2023-5602 Social Media Share Buttons & Social Sharing Icons <= 2.8.5 - Cross-Site Request Forgery — Social Media Share Buttons & Social Sharing IconsCWE-352 4.3 Medium2023-10-20
CVE-2023-0958 Inisev Plugins (Various Versions) - Missing Authorization on handle_installation function — RedirectionCWE-862 4.3 Medium2023-07-28
CVE-2023-3977 Inisev Plugins (Various Versions) - Cross-Site Request Forgery on handle_installation function — RedirectionCWE-352 4.3 Medium2023-07-28

This page lists every published CVE security advisory associated with Inisev. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.