Browse all 5 CVE security advisories affecting Joe. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Joe primarily serves as a web application framework used for building dynamic content systems. Historically, Joe has been associated with several common vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and privilege escalation flaws. The framework's modular architecture has contributed to consistent security challenges across versions. Notable characteristics include its widespread adoption in enterprise environments, which amplifies the impact of discovered vulnerabilities. While no major public incidents have been directly attributed to Joe, the five CVEs on record highlight ongoing security concerns, particularly around input validation and access control mechanisms.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-62939 | WordPress Open Currency Converter plugin <= 1.5.0 - Cross Site Scripting (XSS) vulnerability — Open Currency ConverterCWE-79 | 6.5 | Medium | 2025-10-27 |
| CVE-2025-32487 | WordPress Waymark plugin <= 1.5.2 - Server Side Request Forgery (SSRF) Vulnerability — WaymarkCWE-918 | 4.9 | Medium | 2025-04-09 |
| CVE-2025-32495 | WordPress Waymark plugin <= 1.5.3 - Cross Site Scripting (XSS) Vulnerability — WaymarkCWE-79 | 6.5 | Medium | 2025-04-09 |
| CVE-2025-26770 | WordPress Waymark plugin <= 1.5.0 - Cross Site Scripting (XSS) vulnerability — WaymarkCWE-79 | 6.5 | Medium | 2025-02-17 |
| CVE-2025-24658 | WordPress Auction Nudge – Your eBay on Your Site plugin <= 7.2.0 - Cross Site Scripting (XSS) vulnerability — Auction Nudge – Your eBay on Your SiteCWE-79 | 5.9 | Medium | 2025-01-24 |
This page lists every published CVE security advisory associated with Joe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.