Browse all 7 CVE security advisories affecting Olive Design. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Olive Design develops web-based collaboration tools primarily used for creative project management and team communication. Historically, the organization's products have been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for all seven CVEs on record. While no major public security incidents have been documented, the consistent pattern of vulnerabilities in authentication mechanisms and input validation processes suggests potential weaknesses in secure coding practices. The company's offerings remain attractive to small-to-medium creative agencies despite these security concerns, which primarily stem from insufficient sanitization of user inputs and inadequate access controls.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2022-47435 | WordPress WP-OliveCart Plugin <= 1.1.3 is vulnerable to Cross Site Scripting (XSS) — WP-OliveCartCWE-79 | 5.9 | Medium | 2023-04-23 |
| CVE-2016-4903 | WordPress WP-OliveCart和WP-OliveCartPro 跨站脚本漏洞 — WP-OliveCart | 6.1 | - | 2017-05-22 |
| CVE-2016-4904 | WordPress WP-OliveCart和WP-OliveCartPro 跨站请求伪造漏洞 — WP-OliveCart | 8.8 | - | 2017-05-22 |
| CVE-2016-4905 | WordPress WP-OliveCart和WP-OliveCartPro SQL注入漏洞 — WP-OliveCart | 7.2 | - | 2017-05-22 |
| CVE-2016-7839 | Olive Design Olive Blog 跨站脚本漏洞 — Olive Blog | 6.1 | - | 2017-04-28 |
| CVE-2016-7840 | Olive Design WEB SCHEDULE 跨站脚本漏洞 — WEB SCHEDULE | 6.1 | - | 2017-04-28 |
| CVE-2016-7841 | Olive Design Olive Diary DX 跨站脚本漏洞 — Olive Diary DX | 6.1 | - | 2017-04-28 |
This page lists every published CVE security advisory associated with Olive Design. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.