Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

unknown — Vulnerabilities & Security Advisories 4143

Browse all 4143 CVE security advisories affecting unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2024-12682 Smart Maintenance Mode < 1.5.2 - Admin+ Stored XSS — Smart Maintenance Mode 4.8 -2025-03-25
CVE-2024-12769 Simple Banner < 3.0.4 - Admin+ Stored XSS — Simple Banner 4.8 -2025-03-25
CVE-2024-13118 IP Based Login < 2.4.1 - Log Deletion via CSRF — IP Based Login 4.3 -2025-03-25
CVE-2024-12109 Product Labels For Woocommerce < 1.5.9 - Admin+ SQLi — Product Labels For Woocommerce (Sale Badges) 7.2 -2025-03-25
CVE-2024-11503 WP Tabs < 2.2.7 - Admin+ Stored XSS — WP Tabs 4.8 -2025-03-25
CVE-2024-11273 Contact Form & SMTP Plugin for WordPress by PirateForms < 2.6.0 - Admin+ Stored XSS — Contact Form & SMTP Plugin for WordPress by PirateForms 4.8 -2025-03-25
CVE-2024-11272 Contact Form & SMTP Plugin for WordPress by PirateForms < 2.6.0 - Admin+ Stored XSS — Contact Form & SMTP Plugin for WordPress by PirateForms 4.8 -2025-03-25
CVE-2024-10703 Registrations for The Events Calendar < 2.13.4 - Admin+ Stored XSS — Registrations for the Events Calendar 4.8 -2025-03-25
CVE-2024-10638 Product Labels For Woocommerce < 1.5.11 - Admin+ SQLi — Product Labels For Woocommerce (Sale Badges) 7.2 -2025-03-25
CVE-2024-10679 Quiz and Survey Master (QSM) < 9.2.1 - Author+ Stored XSS — Quiz and Survey Master (QSM) 4.8 -2025-03-25
CVE-2024-10566 Slider by 10Web < 1.2.62 - Contributor+ Stored XSS — Slider by 10Web 4.8 -2025-03-25
CVE-2024-10565 Slider by 10Web < 1.2.62 - Admin+ Stored XSS via Widget — Slider by 10Web 4.8 -2025-03-25
CVE-2024-10560 Form Maker by 10Web < 1.15.30 - Admin+ Stored XSS — Form Maker by 10Web 4.8 -2025-03-25
CVE-2024-10554 WP-Advanced-Search < 3.3.9.3 - Admin+ Stored XSS — WordPress WP-Advanced-Search 4.8 -2025-03-25
CVE-2024-10472 Stylish Price List < 7.1.12 - Contributor+ Stored XSS — Stylish Price List 4.8 -2025-03-25
CVE-2024-10105 Jobs for WordPress < 2.7.11 - Contributor+ Stored XSS — Job Postings 4.8 -2025-03-25
CVE-2025-1203 Slider, Gallery, Carousel by MetaSlider < 3.95.0 - Editor+ Stored XSS — Slider, Gallery, and Carousel by MetaSlider 4.8AIMediumAI2025-03-24
CVE-2025-1062 Slider, Gallery, Carousel by MetaSlider < 3.95.0 - Editor+ Stored XSS — Slider, Gallery, and Carousel by MetaSlider 4.8AIMediumAI2025-03-24
CVE-2024-13124 Photo Gallery by 10Web < 1.8.33 - Admin+ Stored XSS — Photo Gallery by 10Web 4.8AIMediumAI2025-03-24
CVE-2024-10558 Form Maker by 10Web < 1.15.30 - Admin+ Stored XSS — Form Maker by 10Web 4.8AIMediumAI2025-03-24
CVE-2025-0718 Nested Pages < 3.2.13 - Contributor+ Stored XSS — Nested Pages 4.8 -2025-03-23
CVE-2025-1446 Pods < 3.2.8.2 - Admin+ SQL Injection — Pods 7.2 -2025-03-23
CVE-2024-13881 LinkMyPosts <= 1.0 - Reflected XSS — Link My Posts 6.1 -2025-03-20
CVE-2024-13878 SpotBot <= 0.1.8 - Reflected XSS — SpotBot 6.1 -2025-03-20
CVE-2024-13880 My Quota <= 1.0.8 - Reflected XSS — My Quota 6.1 -2025-03-20
CVE-2024-13876 Meintopf <= 0.2.1 - Reflected XSS — mEintopf 6.1 -2025-03-20
CVE-2024-13877 Passbeemedia Web Push Notifications <= 1.0.0 - Reflected XSS — Passbeemedia Web Push Notification 6.1 -2025-03-20
CVE-2024-13875 WP Programmmanager <= 1.2 - Reflected XSS — WP-PManager 6.1 -2025-03-20
CVE-2025-1232 Site Reviews < 7.2.5 - Unauthenticated Stored XSS — Site Reviews 6.1 -2025-03-19
CVE-2025-1623 GDPR Cookie Compliance < 4.15.9 - Admin+ Stored XSS — GDPR Cookie Compliance 4.8 -2025-03-16

This page lists every published CVE security advisory associated with unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.