Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Webvitaly — Vulnerabilities & Security Advisories 16

Browse all 16 CVE security advisories affecting Webvitaly. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Webvitaly is a web application primarily used for content management and e-commerce platforms. Historically, the application has been susceptible to multiple vulnerability classes, including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation, contributing to its 16 recorded CVEs. Security researchers have identified consistent issues in input validation and access control mechanisms. While no major public security incidents have been widely documented, the accumulation of CVEs suggests ongoing challenges in secure development practices. Organizations using Webvitaly should prioritize regular patching and security assessments to mitigate potential risks associated with these recurring vulnerability patterns.

CVE IDTitleCVSSSeverityPublished
CVE-2025-62111 WordPress Extra Shortcodes plugin <= 2.2 - Cross Site Scripting (XSS) vulnerability — Extra ShortcodesCWE-79 6.5 Medium2025-12-31
CVE-2025-53467 WordPress Login-Logout Plugin <= 3.8 - Cross Site Scripting (XSS) Vulnerability — Login-LogoutCWE-79 5.9 Medium2025-09-22
CVE-2025-58030 WordPress Page-list Plugin <= 5.8 - Cross Site Scripting (XSS) Vulnerability — Page-listCWE-79 6.5 Medium2025-09-22
CVE-2025-58229 WordPress Sitekit Plugin <= 2.0 - Cross Site Scripting (XSS) Vulnerability — SitekitCWE-79 6.5 Medium2025-09-22
CVE-2025-58832 WordPress Search by Google Plugin <= 1.9 - Cross Site Scripting (XSS) Vulnerability — Search by GoogleCWE-79 5.9 Medium2025-09-05
CVE-2025-50047 WordPress Sitekit plugin <= 1.9 - Cross Site Scripting (XSS) Vulnerability — SitekitCWE-79 6.5 Medium2025-06-20
CVE-2025-30776 WordPress Sitekit plugin <= 1.8 - Cross Site Scripting (XSS) Vulnerability — SitekitCWE-79 6.5 Medium2025-03-27
CVE-2024-51896 WordPress Magic Slider plugin <= 1.3 - Stored Cross Site Scripting (XSS) vulnerability — Magic SliderCWE-79 6.5 Medium2024-11-19
CVE-2024-47382 WordPress Page-list plugin <= 5.6 - Cross Site Scripting (XSS) vulnerability — Page-listCWE-79 6.5 Medium2024-10-05
CVE-2023-6844 iframe <= 5.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via shortcode — iframeCWE-79 5.0 Medium2024-05-23
CVE-2024-34805 WordPress iframe plugin <= 5.0 - Cross Site Scripting (XSS) vulnerability — iFrameCWE-79 6.5 Medium2024-05-16
CVE-2024-29111 WordPress Sitekit plugin <= 1.6 - Cross Site Scripting (XSS) vulnerability — SitekitCWE-79 6.5 Medium2024-03-19
CVE-2023-52125 WordPress iFrame Plugin <= 4.8 is vulnerable to Cross Site Scripting (XSS) — iframeCWE-79 6.5 Medium2024-01-05
CVE-2023-4919 iframe <= 4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'iframe' Shortcode — iframeCWE-79 6.4 Medium2023-10-20
CVE-2023-5071 Sitekit <= 1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'sitekit_iframe' shortcode — SitekitCWE-79 6.4 Medium2023-10-20
CVE-2023-27628 WordPress Sitekit Plugin <= 1.3 is vulnerable to Cross Site Scripting (XSS) — SitekitCWE-79 6.5 Medium2023-09-27

This page lists every published CVE security advisory associated with Webvitaly. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.