Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

LambertGroup — Vulnerabilities & Security Advisories 61

Browse all 61 CVE security advisories affecting LambertGroup. AI-powered Chinese analysis, POCs, and references for each vulnerability.

LambertGroup operates primarily as a provider of enterprise resource planning and supply chain management software, facilitating complex logistical operations for mid-to-large-sized organizations. Security audits have identified a significant volume of vulnerabilities, with 61 Common Vulnerabilities and Exposures (CVEs) currently on record, indicating a history of inconsistent patch management or legacy code issues. The most prevalent vulnerability classes affecting their platforms include remote code execution, cross-site scripting, and privilege escalation flaws, which often stem from inadequate input validation and improper access controls. These defects have historically allowed attackers to bypass authentication mechanisms or execute arbitrary commands on affected servers. While no single catastrophic data breach has been publicly attributed solely to LambertGroup, the cumulative nature of these CVEs suggests systemic weaknesses in their software development lifecycle. Organizations utilizing their solutions must prioritize rigorous network segmentation and continuous monitoring to mitigate the risk of exploitation inherent in their current software architecture.

CVE IDTitleCVSSSeverityPublished
CVE-2026-28112 WordPress AllInOne - Banner Rotator plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — AllInOne - Banner RotatorCWE-79 7.1 High2026-03-05
CVE-2026-28109 WordPress LambertGroup - AllInOne - Content Slider plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Content SliderCWE-79 7.1 High2026-03-05
CVE-2026-28108 WordPress LambertGroup - AllInOne - Banner with Thumbnails plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Banner with ThumbnailsCWE-79 7.1 High2026-03-05
CVE-2026-28110 WordPress LambertGroup - AllInOne - Banner with Playlist plugin <= 3.8 - Reflected Cross Site Scripting (XSS) vulnerability — LambertGroup - AllInOne - Banner with PlaylistCWE-79 7.1 High2026-03-05
CVE-2026-28102 WordPress UberSlider Classic plugin <= 2.5 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider ClassicCWE-79 7.1 High2026-03-05
CVE-2026-28100 WordPress UberSlider PerpetuumMobile plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider PerpetuumMobileCWE-79 7.1 High2026-03-05
CVE-2026-28101 WordPress UberSlider MouseInteraction plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider MouseInteractionCWE-79 7.1 High2026-03-05
CVE-2026-28103 WordPress LBG Zoominoutslider plugin <= 5.4.5 - Reflected Cross Site Scripting (XSS) vulnerability — LBG ZoominoutsliderCWE-79 7.1 High2026-03-05
CVE-2026-28099 WordPress UberSlider Ultra plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — UberSlider UltraCWE-79 7.1 High2026-03-05
CVE-2025-69053 WordPress Universal Video Player plugin <= 3.8.4 - Reflected Cross Site Scripting (XSS) vulnerability — Universal Video PlayerCWE-79 7.1 High2026-01-22
CVE-2025-69048 WordPress Universal Video Player plugin <= 3.8.4 - Reflected Cross Site Scripting (XSS) vulnerability — Universal Video PlayerCWE-79 7.1 High2026-01-22
CVE-2025-49066 WordPress Accordion Slider PRO plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability — Accordion Slider PROCWE-79 7.1 High2026-01-22
CVE-2025-49046 WordPress xPromoter plugin <= 1.3.4 - Reflected Cross Site Scripting (XSS) vulnerability — xPromoterCWE-79 7.1 High2026-01-22
CVE-2025-49043 WordPress Magic Responsive Slider and Carousel WordPress plugin <= 1.6 - Reflected Cross Site Scripting (XSS) vulnerability — Magic Responsive Slider and Carousel WordPressCWE-79 7.1 High2026-01-22
CVE-2025-48094 WordPress Magic Slider plugin <= 2.2 - Reflected Cross Site Scripting (XSS) vulnerability — Magic SliderCWE-79 7.1 High2026-01-22
CVE-2025-47666 WordPress Image&Video FullScreen Background plugin <= 1.6.7 - Reflected Cross Site Scripting (XSS) vulnerability — Image&Video FullScreen BackgroundCWE-79 7.1 High2026-01-22
CVE-2025-32123 WordPress HTML5 Video Player with Playlist & Multiple Skins plugin <= 5.3.5 - Reflected Cross Site Scripting (XSS) vulnerability — HTML5 Video Player with Playlist & Multiple SkinsCWE-79 7.1 High2026-01-22
CVE-2025-27005 WordPress HTML5 Video Player plugin <= 5.3.5 - Reflected Cross Site Scripting (XSS) vulnerability — HTML5 Video PlayerCWE-79 7.1 High2026-01-22
CVE-2025-27004 WordPress Famous - Responsive Image And Video Grid Gallery WordPress Plugin plugin <= 1.4 - Reflected Cross Site Scripting (XSS) vulnerability — Famous - Responsive Image And Video Grid Gallery WordPress PluginCWE-79 7.1 High2026-01-08
CVE-2025-27002 WordPress CountDown With Image or Video Background plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability — CountDown With Image or Video BackgroundCWE-79 7.1 High2026-01-08
CVE-2025-68056 WordPress LBG Zoominoutslider plugin <= 5.4.4 - SQL Injection vulnerability — LBG ZoominoutsliderCWE-89 8.5 High2025-12-16
CVE-2025-68053 WordPress xPromoter plugin <= 1.3.4 - SQL Injection vulnerability — xPromoterCWE-89 8.5 High2025-12-16
CVE-2025-68054 WordPress CountDown With Image or Video Background plugin <= 1.5 - SQL Injection vulnerability — CountDown With Image or Video BackgroundCWE-89 8.5 High2025-12-16
CVE-2025-62093 WordPress Image&Video FullScreen Background plugin <= 1.6.7 - SQL Injection vulnerability — Image&Video FullScreen BackgroundCWE-89 8.5 High2025-12-09
CVE-2025-67518 WordPress Accordion Slider PRO plugin <= 1.2 - SQL Injection vulnerability — Accordion Slider PROCWE-89 8.5 High2025-12-09
CVE-2025-60110 WordPress AllInOne - Banner Rotator Plugin <= 3.8 - SQL Injection Vulnerability — AllInOne - Banner RotatorCWE-89 8.5 High2025-09-26
CVE-2025-60108 WordPress LambertGroup - AllInOne - Banner with Thumbnails Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with ThumbnailsCWE-89 8.5 High2025-09-26
CVE-2025-60109 WordPress LambertGroup - AllInOne - Content Slider Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Content SliderCWE-89 8.5 High2025-09-26
CVE-2025-60107 WordPress LambertGroup - AllInOne - Banner with Playlist Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with PlaylistCWE-89 8.5 High2025-09-26
CVE-2025-48154 WordPress Multimedia Playlist Slider Addon for WPBakery Page Builder Plugin <= 2.1 - Cross Site Scripting (XSS) Vulnerability — Multimedia Playlist Slider Addon for WPBakery Page BuilderCWE-79 7.1 High2025-08-20

This page lists every published CVE security advisory associated with LambertGroup. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.