Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Jordy Meow — Vulnerabilities & Security Advisories 25

Browse all 25 CVE security advisories affecting Jordy Meow. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Jordy Meow operates as a specialized security research entity focused on identifying and reporting vulnerabilities within web applications and server-side software. The profile currently holds 25 Common Vulnerabilities and Exposures (CVEs), indicating a consistent track record in discovering critical flaws. Historically, the discovered issues predominantly fall into the categories of Remote Code Execution (RCE) and Cross-Site Scripting (XSS), with a notable frequency of privilege escalation bugs that allow unauthorized access to administrative functions. These findings suggest a targeted approach toward complex application architectures where input validation and access control mechanisms are often bypassed. While no single major incident defines the entity’s public record, the cumulative impact of these CVEs has contributed to significant patches across various enterprise platforms. The work emphasizes technical precision over public disclosure, aiming to remediate high-severity risks before they can be exploited in the wild.

CVE IDTitleCVSSSeverityPublished
CVE-2026-39506 WordPress AI Engine (Pro) plugin < 3.4.2 - Broken Access Control vulnerability — AI Engine (Pro)CWE-862 4.3 Medium2026-04-08
CVE-2026-32524 WordPress Photo Engine plugin <= 6.4.9 - Arbitrary File Upload vulnerability — Photo EngineCWE-434 9.1 Critical2026-03-25
CVE-2026-32418 WordPress Meow Gallery plugin <= 5.4.4 - SQL Injection vulnerability — Meow GalleryCWE-89 7.6 High2026-03-13
CVE-2026-23802 WordPress AI Engine plugin <= 3.3.2 - Arbitrary File Upload vulnerability — AI EngineCWE-434 9.1 Critical2026-03-05
CVE-2025-60104 WordPress Gallery Custom Links Plugin <= 2.2.5 - Cross Site Scripting (XSS) Vulnerability — Gallery Custom LinksCWE-79 5.9 Medium2025-09-26
CVE-2025-48169 WordPress Code Engine Plugin <= 0.3.3 - Remote Code Execution (RCE) Vulnerability — Code EngineCWE-94 9.9 Critical2025-08-20
CVE-2025-54672 WordPress Photo Engine Plugin plugin <= 6.4.3 - Cross Site Request Forgery (CSRF) Vulnerability — Photo EngineCWE-352 4.3 Medium2025-08-14
CVE-2025-50043 WordPress Code Engine plugin <= 0.3.2 - Cross Site Scripting (XSS) Vulnerability — Code EngineCWE-79 6.5 Medium2025-06-20
CVE-2025-47449 WordPress Meow Gallery plugin <= 5.2.7 - Cross Site Scripting (XSS) Vulnerability — Meow GalleryCWE-79 5.9 Medium2025-05-07
CVE-2025-26778 WordPress Gallery Custom Links Plugin <= 2.2.1 - Cross Site Scripting (XSS) vulnerability — GalleryCWE-79 5.9 Medium2025-02-17
CVE-2024-43332 WordPress Photo Engine plugin <= 6.4.0 - Broken Access Control vulnerability — Photo EngineCWE-862 4.3 Medium2024-11-01
CVE-2024-39660 WordPress Photo Engine (Media Organizer & Lightroom) plugin <= 6.3.1 - Cross Site Scripting (XSS) vulnerability — Photo EngineCWE-79 5.9 Medium2024-08-01
CVE-2024-38791 WordPress AI ENGINE plugin <= 2.4.7 - Server Side Request Forgery (SSRF) vulnerability — AI Engine: ChatGPT ChatbotCWE-918 4.9 Medium2024-08-01
CVE-2024-35712 WordPress Database Cleaner: Clean, Optimize & Repair plugin <= 1.0.5 - Arbitrary File Read vulnerability — Database CleanerCWE-22 4.9 Medium2024-06-10
CVE-2024-34440 WordPress AI Engine plugin <= 2.2.63 - Auth. Arbitrary File Upload vulnerability — AI Engine: ChatGPT ChatbotCWE-434 9.1 Critical2024-05-13
CVE-2024-33922 WordPress WP Media Cleaner plugin <= 6.7.2 - Sensitive Data Exposure via Log File vulnerability — WP Media CleanerCWE-532 5.3 Medium2024-05-02
CVE-2023-51409 WordPress AI Engine plugin <= 1.9.98 - Unauthenticated Arbitrary File Upload vulnerability — AI Engine: ChatGPT ChatbotCWE-434 10.0 Critical2024-04-12
CVE-2024-29090 WordPress AI Engine plugin <= 2.1.4 - Server Side Request Forgery (SSRF) vulnerability — AI Engine: ChatGPT ChatbotCWE-918 6.8 Medium2024-03-28
CVE-2024-29100 WordPress AI Engine plugin <= 2.1.4 - Arbitrary File Upload vulnerability — AI Engine: ChatGPT ChatbotCWE-434 9.1 Critical2024-03-28
CVE-2024-1434 WordPress Media Alt Renamer Plugin 0.0.1 is vulnerable to Cross Site Scripting (XSS) — Media Alt RenamerCWE-79 5.9 Medium2024-02-29
CVE-2023-51508 WordPress Database Cleaner Plugin <= 0.9.8 is vulnerable to Sensitive Data Exposure — Database Cleaner: Clean, Optimize & RepairCWE-532 5.3 Medium2024-01-08
CVE-2023-38513 WordPress Photo Engine Plugin <= 6.2.5 is vulnerable to Insecure Direct Object References (IDOR) — Photo Engine (Media Organizer & Lightroom)CWE-639 5.4 Medium2023-12-20
CVE-2023-44991 WordPress Media File Renamer Plugin <= 5.6.9 is vulnerable to Sensitive Data Exposure — Media File Renamer: Rename Files (Manual, Auto & AI)CWE-200 6.5 Medium2023-12-19
CVE-2023-44982 WordPress WP Retina 2x Plugin <= 6.4.5 is vulnerable to Sensitive Data Exposure — Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retina)CWE-200 5.3 Medium2023-12-19
CVE-2018-0511 WP Retina 2x 跨站脚本漏洞 — WP Retina 2x 6.1 -2018-02-01

This page lists every published CVE security advisory associated with Jordy Meow. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.