Browse all 3 CVE security advisories affecting johnbillion. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Johnbillion develops WordPress plugins with a core use case of extending website functionality through specialized tools. Historically, vulnerabilities associated with this developer include multiple remote code execution (RCE) flaws and cross-site scripting (XSS) issues, often stemming from insufficient input validation and improper sanitization. Security characteristics reveal a pattern of vulnerabilities in authentication mechanisms and privilege escalation risks. While no major public incidents have been documented, the three CVEs on record highlight recurring security challenges in plugin development, emphasizing the need for robust input handling and secure coding practices to mitigate risks in WordPress environments.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-4267 | Query Monitor <= 3.20.3 - Reflected Cross-Site Scripting via Request URI — Query MonitorCWE-79 | 7.2 | High | 2026-03-31 |
This page lists every published CVE security advisory associated with johnbillion. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.