Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SoftLab — Vulnerabilities & Security Advisories 13

Browse all 13 CVE security advisories affecting SoftLab. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SoftLab develops enterprise software solutions for data management and workflow automation. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and improper access controls. While no major public security incidents have been widely reported, the 13 CVEs on record indicate consistent security challenges across their product lines. Their security posture appears to follow typical industry patterns, with vulnerabilities primarily centered on web application interfaces and authentication mechanisms. The company has addressed issues through patch releases, though the recurrence of similar vulnerability types suggests potential gaps in secure development practices.

CVE IDTitleCVSSSeverityPublished
CVE-2023-32117 WordPress Integrate Google Drive plugin <= 1.1.99 - Unauthenticated Broken Access Control vulnerability — Integrate Google DriveCWE-862 9.8 Critical2024-12-09
CVE-2023-52177 WordPress Integrate Google Drive plugin <= 1.3.3 - Broken Access Control vulnerability — Integrate Google DriveCWE-862 5.4 Medium2024-06-12
CVE-2024-34753 WordPress Radio Player plugin <= 2.0.73 - Broken Access Control vulnerability — Radio PlayerCWE-862 5.3 Medium2024-06-11
CVE-2024-35661 WordPress Upload Fields for WPForms plugin <= 1.0.2 - Broken Access Control vulnerability — Upload Fields for WPFormsCWE-862 5.3 Medium2024-06-09
CVE-2024-32813 WordPress Integrate Google Drive plugin <= 1.3.9 - Broken Access Control vulnerability — Integrate Google DriveCWE-862 5.3 Medium2024-06-09
CVE-2024-35670 WordPress Integrate Google Drive plugin <= 1.3.93 - Broken Access Control vulnerability — Integrate Google Drive 5.3 Medium2024-06-04
CVE-2024-33592 WordPress Radio Player plugin <= 2.0.73 - Server Side Request Forgery (SSRF) vulnerability — Radio PlayerCWE-918 5.4 Medium2024-04-25
CVE-2024-32506 WordPress Radio Player plugin <= 2.0.73 - Sensitive Data Exposure vulnerability — Radio PlayerCWE-200 5.4 Medium2024-04-17
CVE-2024-29771 WordPress Dracula Dark Mode plugin <= 1.0.8 - Cross Site Scripting (XSS) vulnerability — Dracula Dark Mode - The Revolutionary Dark Mode Plugin For WordPressCWE-79 6.5 Medium2024-03-27
CVE-2024-29811 WordPress Radio Player plugin <= 2.0.73 - Cross Site Scripting (XSS) vulnerability — Radio PlayerCWE-79 6.5 Medium2024-03-27
CVE-2024-2906 WordPress Radio Player plugin <= 2.0.73 - Unauthenticated Broken Access Control vulnerability — Radio PlayerCWE-862 6.5 Medium2024-03-26
CVE-2023-49769 WordPress Integrate Google Drive Plugin <= 1.3.4 is vulnerable to Cross Site Request Forgery (CSRF) — Integrate Google DriveCWE-352 4.3 Medium2023-12-17
CVE-2023-47548 WordPress Integrate Google Drive Plugin <= 1.3.2 is vulnerable to Open Redirection — Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files Into Your WordPress SiteCWE-601 4.7 Medium2023-12-07

This page lists every published CVE security advisory associated with SoftLab. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.