Browse all 3 CVE security advisories affecting Stark Digital. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Stark Digital develops enterprise content management systems with a focus on scalable web applications. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and access control flaws. The company has three CVEs on record, including critical RCE flaws in their document processing module. While no major public security incidents have been documented, their vulnerability history suggests a pattern of security misconfigurations and inadequate sanitization of user-supplied data, requiring organizations to implement strict input validation and regular security updates when deploying their solutions.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-43967 | WordPress WP Testimonial Widget plugin <= 3.1 - Cross Site Scripting (XSS) vulnerability — WP Testimonial WidgetCWE-79 | 5.9 | Medium | 2024-08-26 |
| CVE-2024-43966 | WordPress WP Testimonial Widget plugin <= 3.1 - SQL Injection vulnerability — WP Testimonial WidgetCWE-89 | 7.6 | High | 2024-08-26 |
| CVE-2023-47516 | WordPress Category Post List Widget Plugin <= 2.0 is vulnerable to Cross Site Scripting (XSS) — Category Post List WidgetCWE-352 | 7.1 | High | 2023-11-13 |
This page lists every published CVE security advisory associated with Stark Digital. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.