Browse all 5 CVE security advisories affecting WPExperts.io. AI-powered Chinese analysis, POCs, and references for each vulnerability.
wpexperts.io specializes in WordPress security services, offering vulnerability assessments and hardening solutions for WordPress websites. Historically, their recorded CVEs primarily involve remote code execution (RCE) and cross-site scripting (XSS) vulnerabilities, often stemming from insufficient input validation and improper access controls. The platform has also documented instances of privilege escalation flaws that could allow unauthorized administrative access. While no major public security incidents have been widely reported, their vulnerability history suggests a pattern of security weaknesses in plugin and theme handling, emphasizing the ongoing challenges in maintaining secure WordPress environments despite their security-focused operations.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-31888 | WordPress WP Multi Store Locator Plugin <= 2.5.2 - Cross Site Request Forgery (CSRF) vulnerability — WP Multistore LocatorCWE-352 | 4.3 | Medium | 2025-04-01 |
| CVE-2025-28898 | WordPress WP Multistore Locator plugin <= 2.5.2 - SQL Injection vulnerability — WP Multistore LocatorCWE-89 | 9.3 | Critical | 2025-03-26 |
| CVE-2025-26974 | WordPress WP Multi Store Locator plugin <= 2.5.1 - SQL Injection vulnerability — WP Multistore LocatorCWE-89 | 9.3 | Critical | 2025-02-25 |
| CVE-2025-24680 | WordPress WP Multi Store Locator Plugin <= 2.4.7 - Cross Site Scripting (XSS) vulnerability — WP Multistore LocatorCWE-80 | 7.1 | High | 2025-01-27 |
| CVE-2023-35038 | WordPress WP PDF Generator Plugin <= 1.2.2 is vulnerable to Cross Site Request Forgery (CSRF) — WP PDF GeneratorCWE-352 | 5.4 | Medium | 2023-07-17 |
This page lists every published CVE security advisory associated with WPExperts.io. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.