Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

RedefiningTheWeb — Vulnerabilities & Security Advisories 8

Browse all 8 CVE security advisories affecting RedefiningTheWeb. AI-powered Chinese analysis, POCs, and references for each vulnerability.

RedefiningTheWeb develops web application platforms with a core focus on dynamic content management systems. Historically, their products have been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for their 8 recorded CVEs. The organization has demonstrated inconsistent patch management practices, with several critical vulnerabilities remaining unaddressed for extended periods. While no major public security incidents have been documented, the pattern of recurring vulnerabilities in similar components suggests potential systemic weaknesses in their secure development lifecycle. Their CVE history indicates a need for improved input validation and access control mechanisms across their platform architecture.

CVE IDTitleCVSSSeverityPublished
CVE-2025-64231 WordPress WordPress Contact Form 7 PDF, Google Sheet & Database plugin <= 3.0.0 - Arbitrary File Upload vulnerability — WordPress Contact Form 7 PDF, Google Sheet & DatabaseCWE-434 9.9 Critical2025-12-18
CVE-2025-48342 WordPress Dynamic Pricing & Discounts Lite for WooCommerce plugin <= 2.0.3 - Cross Site Request Forgery (CSRF) vulnerability — Dynamic Pricing & Discounts Lite for WooCommerceCWE-352 5.4 Medium2025-05-19
CVE-2025-39518 WordPress BMA Lite plugin <= 1.4.2 - SQL Injection vulnerability — BMA LiteCWE-89 7.6 High2025-04-16
CVE-2025-31850 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 2.1.0 - Cross Site Scripting (XSS) vulnerability — PDF Generator Addon for Elementor Page BuilderCWE-79 6.5 Medium2025-04-01
CVE-2025-24569 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 1.7.5 - Arbitrary File Read vulnerability — PDF Generator Addon for Elementor Page BuilderCWE-22 7.5 High2025-02-03
CVE-2024-9935 PDF Generator Addon for Elementor Page Builder <= 2.0.0 - Unauthenticated Arbitrary File Download — PDF Generator for WordPress ElementorCWE-22 7.5 High2024-11-16
CVE-2024-50449 WordPress PDF Generator Addon for Elementor Page Builder plugin <= 1.7.4 - Cross Site Scripting (XSS) vulnerability — PDF Generator Addon for Elementor Page BuilderCWE-79 6.5 Medium2024-10-28
CVE-2024-9289 WordPress & WooCommerce Affiliate Program <= 8.4.1 - Authentication Bypass to Account Takeover and Privilege Escalation — WordPress & WooCommerce Affiliate ProgramCWE-288 9.8 Critical2024-10-01

This page lists every published CVE security advisory associated with RedefiningTheWeb. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.