Browse all 13 CVE security advisories affecting WP Messiah. AI-powered Chinese analysis, POCs, and references for each vulnerability.
WP Messiah is a WordPress plugin primarily used for website management and optimization. Historically, it has been associated with multiple critical vulnerabilities, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation. The plugin's security record shows 13 CVEs, with many issues stemming from insufficient input validation and improper access controls. Notable incidents include multiple RCE flaws that allowed attackers to execute arbitrary code on affected servers, and persistent XSS vulnerabilities that could compromise user sessions. These security lapses have made WP Messiah a frequent target in WordPress security advisories, highlighting the importance of regular updates and careful plugin management.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-68030 | WordPress Frontis Blocks plugin <= 1.1.5 - Server Side Request Forgery (SSRF) vulnerability — Frontis BlocksCWE-918 | 7.2 | High | 2026-01-22 |
This page lists every published CVE security advisory associated with WP Messiah. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.