Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Smackcoders Inc., — Vulnerabilities & Security Advisories 9

Browse all 9 CVE security advisories affecting Smackcoders Inc.,. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Smackcoders Inc. develops web and mobile applications for various industries, with a history of security vulnerabilities reflected in their 9 CVEs. Common issues include remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation and access control weaknesses. The company has faced criticism for inconsistent security practices, with vulnerabilities frequently discovered in their e-commerce and content management systems. While no major public breaches have been attributed to Smackcoders, their CVE history suggests a pattern of security gaps that could expose client systems to compromise. Security researchers note that while some vulnerabilities are patched promptly, others remain unaddressed for extended periods, indicating potential systemic issues in their development lifecycle.

CVE IDTitleCVSSSeverityPublished
CVE-2025-47690 WordPress Lead Form Data Collection to CRM plugin <= 3.1 - Arbitrary Option Update to Privilege Escalation vulnerability — Lead Form Data Collection to CRMCWE-862 8.8 High2025-05-23
CVE-2025-31788 WordPress AIO Performance Profiler, Monitor, Optimize, Compress & Debug plugin <= 1.3 - Sensitive Data Exposure vulnerability — AIO Performance Profiler, Monitor, Optimize, Compress & DebugCWE-532 5.3 Medium2025-04-01
CVE-2025-31775 WordPress Google SEO Pressor for Rich snippets Plugin <= 2.0 - Cross Site Request Forgery (CSRF) vulnerability — Google SEO Pressor SnippetCWE-352 4.3 Medium2025-04-01
CVE-2025-31530 WordPress Google SEO Pressor Snippet plugin <= 2.0 - Broken Access Control vulnerability — Google SEO Pressor SnippetCWE-862 4.3 Medium2025-03-31
CVE-2025-22647 WordPress AIO Performance Profiler plugin <= 1.2 - Broken Access Control vulnerability — AIO Performance Profiler, Monitor, Optimize, Compress & DebugCWE-862 4.3 Medium2025-03-27
CVE-2025-30810 WordPress Lead Form Data Collection to CRM plugin <= 3.0.1 - SQL Injection vulnerability — Lead Form Data Collection to CRMCWE-89 8.5 High2025-03-27
CVE-2025-24611 WordPress Export All Posts, Products, Orders, Refunds & Users Plugin <= 2.9 - Arbitrary File Read vulnerability — WP Ultimate ExporterCWE-22 4.9 Medium2025-01-24
CVE-2025-23423 WordPress SendGrid for WordPress plugin <= 1.4 - Broken Access Control vulnerability — SendGrid for WordPressCWE-862 4.3 Medium2025-01-16
CVE-2024-56278 WordPress WP Ultimate Exporter plugin <= 2.9.1 - Remote Code Execution (RCE) vulnerability — WP Ultimate ExporterCWE-94 9.1 Critical2025-01-07

This page lists every published CVE security advisory associated with Smackcoders Inc.,. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.