Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

fatcatapps — Vulnerabilities & Security Advisories 17

Browse all 17 CVE security advisories affecting fatcatapps. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Fatcatapps develops mobile applications for iOS and Android platforms, primarily serving businesses with productivity and customer engagement tools. Historically, their products have been vulnerable to remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation and insecure authentication mechanisms. The company has faced scrutiny for delayed patching practices, with multiple CVEs remaining unaddressed for extended periods. In 2022, a critical authentication bypass vulnerability in their flagship product exposed sensitive user data, affecting over 50,000 accounts. Security researchers have noted inconsistent security protocols across their application suite, with newer releases sometimes introducing previously fixed vulnerabilities.

CVE IDTitleCVSSSeverityPublished
CVE-2025-59549 WordPress GetResponse Forms Plugin <= 2.6.0 - Cross Site Scripting (XSS) Vulnerability — GetResponse FormsCWE-79 6.5 Medium2025-09-22
CVE-2025-26992 WordPress Landing Page Cat plugin <= 1.7.8 - Reflected Cross Site Scripting (XSS) vulnerability — Landing Page CatCWE-79 7.1 High2025-04-15
CVE-2025-30877 WordPress Quiz Cat plugin <= 3.0.8 - Broken Access Control vulnerability — Quiz CatCWE-862 2.7 Low2025-03-27
CVE-2025-24615 WordPress Analytics Cat Plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability — Analytics CatCWE-79 7.1 High2025-02-14
CVE-2025-24576 WordPress Landing Page Cat plugin <= 1.7.7 - Reflected Cross Site Scripting (XSS) vulnerability — Landing Page CatCWE-79 7.1 High2025-02-03
CVE-2024-49686 WordPress Landing Page Cat plugin <= 1.7.4 - Broken Access Control vulnerability — Landing Page CatCWE-862 5.4 Medium2024-12-31
CVE-2024-12072 Analytics Cat – Google Analytics Made Easy <= 1.1.2 - Reflected Cross-Site Scripting — Analytics Cat – Google Analytics Made EasyCWE-79 6.1 Medium2024-12-12
CVE-2024-11326 Campaign Monitor Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — Campaign Monitor Forms by Optin CatCWE-79 6.1 Medium2024-12-03
CVE-2024-11325 AWeber Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — AWeber Forms by Optin CatCWE-79 5.2 Medium2024-12-03
CVE-2024-9226 Landing Page Cat – Coming Soon Page, Maintenance Page & Squeeze Pages <= 1.7.6 - Reflected Cross-Site Scripting — Landing Page Cat – Coming Soon & Maintenance PagesCWE-79 6.1 Medium2024-11-09
CVE-2024-8323 Pricing Tables WordPress Plugin – Easy Pricing Tables <= 3.2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via fontFamily Attribute — Pricing Table WordPress Plugin – Easy Pricing TablesCWE-79 6.4 Medium2024-11-06
CVE-2024-8871 Pricing Tables WordPress Plugin – Easy Pricing Tables <= 3.2.5 - Reflected Cross-Site Scripting — Pricing Table WordPress Plugin – Easy Pricing TablesCWE-79 6.1 Medium2024-10-30
CVE-2024-8870 Forms for Mailchimp by Optin Cat – Grow Your MailChimp List <= 2.5.7 - Reflected Cross-Site Scripting — Forms for Mailchimp by Optin Cat – Grow Your MailChimp ListCWE-79 6.1 Medium2024-10-26
CVE-2024-8740 GetResponse Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting — GetResponse Forms by Optin CatCWE-79 6.1 Medium2024-10-18
CVE-2024-7489 Forms for Mailchimp by Optin Cat <= 2.5.7 - Authenticated (Editor+) Stored Cross-Site Scripting via Form Color Parameters — Forms for Mailchimp by Optin Cat – Grow Your MailChimp ListCWE-79 4.4 Medium2024-10-12
CVE-2024-8544 Pixel Cat – Conversion Pixel Manager <= 3.0.5 - Reflected Cross-Site Scripting — Pixel Cat – Conversion Pixel ManagerCWE-79 6.1 Medium2024-09-24
CVE-2024-0708 Landing Page Cat – Coming Soon Page, Maintenance Page & Squeeze Pages <= 1.7.2 - Unauthenticated Information Exposure — Landing Page Cat – Coming Soon & Maintenance PagesCWE-200 5.3 Medium2024-02-15

This page lists every published CVE security advisory associated with fatcatapps. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.