Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Link Whisper — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting Link Whisper. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Link Whisper is a WordPress plugin designed to automate internal linking between posts to improve SEO. Historically, it has been vulnerable to multiple security issues including stored cross-site scripting (XSS) and remote code execution (RCE) due to insufficient input sanitization and improper access controls. The plugin has also faced privilege escalation vulnerabilities that allowed lower-privileged users to perform unauthorized actions. With four CVEs recorded, these issues have enabled attackers to inject malicious scripts, execute arbitrary code on vulnerable sites, and potentially compromise entire WordPress installations. No major public incidents have been widely reported, but the consistent pattern of vulnerabilities highlights ongoing security concerns in its development practices.

Top products by Link Whisper: Link Whisper Free

This page lists every published CVE security advisory associated with Link Whisper. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.