Browse all 4 CVE security advisories affecting WebGeniusLab. AI-powered Chinese analysis, POCs, and references for each vulnerability.
WebGeniusLab develops web application frameworks primarily used for building dynamic content management systems. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, with four CVEs currently documented. The organization has faced criticism for inconsistent patch release timelines and insufficient input validation in their core libraries. While no major public security incidents have been reported, their historical vulnerability patterns suggest a need for improved secure coding practices, particularly in handling user-supplied data and access control mechanisms. Their continued focus on rapid feature development has occasionally overshadowed security considerations in their development lifecycle.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-39473 | WordPress Seofy Core plugin <= 1.6.8 - Local File Inclusion Vulnerability — Seofy CoreCWE-22 | 8.1 | High | 2025-06-09 |
This page lists every published CVE security advisory associated with WebGeniusLab. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.