Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

highwarden — Vulnerabilities & Security Advisories 10

Browse all 10 CVE security advisories affecting highwarden. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Highwarden is primarily used as a web application framework for building enterprise solutions. Historically, it has been associated with multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its 10 recorded CVEs. The framework's complex architecture and extensive plugin ecosystem have contributed to recurring security weaknesses, particularly in input validation and access control. While no major public security incidents have been widely documented, the consistent pattern of vulnerabilities suggests potential risks for organizations relying on Highwarden without rigorous hardening and regular security assessments.

CVE IDTitleCVSSSeverityPublished
CVE-2025-69054 WordPress Super Logos Showcase plugin <= 2.8 - Reflected Cross Site Scripting (XSS) vulnerability — Super Logos ShowcaseCWE-79 7.1 High2026-01-22
CVE-2025-49045 WordPress Super Interactive Maps plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability — Super Interactive MapsCWE-79 7.1 High2026-01-22
CVE-2025-58939 WordPress Super Store Finder plugin <= 7.5 - Cross Site Request Forgery (CSRF) vulnerability — Super Store FinderCWE-352 4.3 Medium2025-10-29
CVE-2025-47571 WordPress Super Store Finder plugin < 7.8 - Local File Inclusion vulnerability — Super Store FinderCWE-98 7.5 High2025-09-09
CVE-2025-49413 WordPress Super Store Finder Plugin <= 7.6 - Reflected Cross Site Scripting (XSS) Vulnerability — Super Store FinderCWE-79 7.1 High2025-08-20
CVE-2025-52720 WordPress Super Store Finder Plugin <= 7.5 - SQL Injection Vulnerability — Super Store FinderCWE-89 9.3 Critical2025-08-14
CVE-2025-39445 WordPress Super Store Finder <= 7.2 - SQL Injection Vulnerability — Super Store FinderCWE-89 9.3 Critical2025-05-19
CVE-2024-43975 WordPress Super Store Finder plugin <= 6.9.7 - Cross Site Scripting (XSS) vulnerability — Super Store FinderCWE-79 7.1 High2024-09-17
CVE-2024-43976 WordPress Super Store Finder plugin <= 6.9.7 - SQL Injection vulnerability — Super Store FinderCWE-89 9.3 Critical2024-09-17
CVE-2024-43978 WordPress Super Store Finder plugin < 6.9.8 - SQL Injection vulnerability — Super Store FinderCWE-89 9.3 Critical2024-09-17

This page lists every published CVE security advisory associated with highwarden. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.