Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

nik00726 — Vulnerabilities & Security Advisories 27

Browse all 27 CVE security advisories affecting nik00726. AI-powered Chinese analysis, POCs, and references for each vulnerability.

nik00726 is primarily associated with the development and maintenance of open-source security scanning tools, specifically targeting web application vulnerabilities. The core use case involves automating the detection of security flaws in web infrastructure, enabling organizations to identify weaknesses before exploitation. Historically, the software has been linked to vulnerabilities involving remote code execution, cross-site scripting, and improper access control mechanisms, reflecting the complex nature of web application logic. Notable security characteristics include the potential for misconfiguration leading to unauthorized data access or system compromise. While no single catastrophic incident defines the profile, the accumulation of 27 CVEs highlights recurring issues in input validation and session management within the tool’s architecture. This pattern suggests that while the tool aids security, its own implementation requires rigorous auditing to prevent it from becoming an attack vector itself.

CVE IDTitleCVSSSeverityPublished
CVE-2015-10147 Easy Testimonial Slider and Form <= 1.0.2 - Authenticated (Admin+) SQL injection — Easy Testimonial Slider and FormCWE-89 4.9 Medium2025-10-29
CVE-2015-10146 Thumbnail Slider With Lightbox <= 1.0.4 - Authenticated (Admin+) SQL Injection — Thumbnail Slider With LightboxCWE-89 4.9 Medium2025-10-29
CVE-2025-10049 Responsive Filterable Portfolio <= 1.0.24 - Authenticated (Admin+) Arbitrary File Upload — Responsive Filterable PortfolioCWE-434 7.2 High2025-09-10
CVE-2015-10144 Responsive Thumbnail Slider < 1.0.1 - Authenticated (Subscriber+) Arbitrary File Upload — Thumbnail carousel sliderCWE-434 8.8 High2025-07-25
CVE-2019-25223 Team Circle Image Slider With Lightbox <= 1.0.4 - Authenticated (Admin+) SQL Injection — Team Circle Image Slider With LightboxCWE-89 4.9 Medium2025-04-08
CVE-2019-25222 Thumbnail carousel slider <= 1.0.4 - Authenticated (Admin+) SQL Injection — Thumbnail carousel sliderCWE-89 4.9 Medium2025-03-15
CVE-2024-12237 Photo Gallery Slideshow & Masonry Tiled Gallery <= 1.0.15 - Authenticated (Subscriber+) Limited Server-Side Request Forgery — Photo Gallery Slideshow & Masonry Tiled GalleryCWE-918 4.3 Medium2025-01-03
CVE-2019-25221 Responsive Filterable Portfolio <=1.0.8 - Authenticated (Admin+) SQL Injection — Responsive Filterable PortfolioCWE-89 6.5 Medium2024-12-13
CVE-2024-11195 Email Subscription Popup <= 1.2.22 - Authenticated (Contributor+) Stored Cross-Site Scripting via print_email_subscribe_form Shortcode — Email Subscription PopupCWE-79 6.4 Medium2024-11-19
CVE-2019-25218 Photo Gallery Slideshow & Masonry Tiled Gallery <= 1.0.3 - Authenticated (Admin+) SQL Injection — Photo Gallery Slideshow & Masonry Tiled GalleryCWE-89 4.9 Medium2024-10-19
CVE-2023-7295 Video Grid <= 1.21 - Reflected Cross-Site Scripting — Video GridCWE-79 6.1 Medium2024-10-16
CVE-2019-25212 video carousel slider with lightbox <= 1.0.6 - Authenticated (Admin+) SQL Injection — video carousel slider with lightboxCWE-89 4.9 Medium2024-09-11
CVE-2015-10130 WordPress Plugin Team Circle Image Slider With Lightbox 安全漏洞 — Team Circle Image Slider With Lightbox 5.3 Medium2024-03-13
CVE-2023-6527 Email Subscription Popup <= 1.2.18 - Reflected Cross-Site Scripting — Email Subscription PopupCWE-79 6.1 Medium2023-12-06
CVE-2023-5945 WordPress Plugin video carousel slider with lightbox 跨站请求伪造漏洞 — video carousel slider with lightbox 4.3 Medium2023-11-03
CVE-2023-5820 WordPress Plugin Thumbnail Slider With Lightbox 跨站请求伪造漏洞 — Thumbnail Slider With Lightbox 9.6 Critical2023-10-27
CVE-2023-5821 WordPress Plugin Thumbnail carousel slider 跨站请求伪造漏洞 — Thumbnail carousel slider 4.3 Medium2023-10-27
CVE-2023-5621 Thumbnail Slider With Lightbox <= 1.0 - Authenticated (Administrator+) Stored Cross-Site Scripting via Image Title — Thumbnail Slider With LightboxCWE-79 4.4 Medium2023-10-18
CVE-2023-5531 Thumbnail Slider With Lightbox <= 1.0 - Cross-Site Request Forgery — Thumbnail Slider With LightboxCWE-352 4.3 Medium2023-10-12
CVE-2023-2184 WP Responsive Tabs horizontal vertical and accordion Tabs <= 1.1.15 - Reflected Cross-Site Scripting — WP Responsive Tabs horizontal vertical and accordion TabsCWE-79 6.1 Medium2023-06-09
CVE-2023-2289 wordpress vertical image slider plugin <= 1.2.16 - Reflected Cross-Site Scripting — Vertical Image SliderCWE-79 6.1 Medium2023-06-09
CVE-2023-2402 Photo Gallery Slideshow & Masonry Tiled Gallery <= 1.0.13 - Reflected Cross-Site Scripting — Photo Gallery Slideshow & Masonry Tiled GalleryCWE-79 6.1 Medium2023-06-09
CVE-2023-2604 Team Circle Image Slider With Lightbox <= 1.0.17 - Reflected Cross-Site Scripting — Team Circle Image Slider With LightboxCWE-79 6.1 Medium2023-06-09
CVE-2023-2710 video carousel slider with lightbox <= 1.0.22 - Reflected Cross-Site Scripting — video carousel slider with lightboxCWE-79 6.1 Medium2023-05-16
CVE-2023-2708 Video Gallery <= 1.0.10 - Reflected Cross-Site Scripting — Video GalleryCWE-79 6.1 Medium2023-05-16
CVE-2023-2120 Thumbnail carousel slider <= 1.1.9 - Reflected Cross-Site Scripting — Thumbnail carousel sliderCWE-79 6.1 Medium2023-04-18
CVE-2023-2119 Responsive Filterable Portfolio <= 1.0.19 - Reflected Cross-Site Scripting — Responsive Filterable PortfolioCWE-79 6.1 Medium2023-04-18

This page lists every published CVE security advisory associated with nik00726. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.