Browse all 13 CVE security advisories affecting e4jvikwp. AI-powered Chinese analysis, POCs, and references for each vulnerability.
e4jvikwp is a web application framework primarily used for building dynamic content management systems and e-commerce platforms. Historically, it has been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its 13 recorded CVEs. The framework's modular architecture introduces complex attack surfaces, particularly in its templating and authentication components. While no major public security incidents have been widely documented, its consistent vulnerability pattern suggests ongoing challenges in secure coding practices. Developers implementing e4jvikwp should prioritize input validation and access controls to mitigate common exploitation vectors.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-49918 | WordPress VikBooking Hotel Booking Engine & PMS plugin <= 1.8.2 - Sensitive Data Exposure vulnerability — VikBooking Hotel Booking Engine & PMSCWE-201 | 5.9 | Medium | 2025-12-18 |
| CVE-2025-5803 | WordPress VikBooking Hotel Booking Engine & PMS plugin <= 1.8.2 - Broken Access Control vulnerability — VikBooking Hotel Booking Engine & PMSCWE-862 | 5.3 | Medium | 2025-11-06 |
| CVE-2025-22670 | WordPress VikBooking Hotel Booking Engine & PMS plugin <= 1.7.2 - CSRF to Settings Change vulnerability — VikBooking Hotel Booking Engine & PMSCWE-862 | 6.5 | Medium | 2025-03-27 |
| CVE-2024-11641 | VikBooking Hotel Booking Engine & PMS <= 1.7.2 - Cross-Site Request Forgery to Authenticated (Subscriber+) Arbitrary File Upload — VikBooking Hotel Booking Engine & PMSCWE-352 | 8.8 | High | 2025-01-26 |
This page lists every published CVE security advisory associated with e4jvikwp. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.