Browse all 28 CVE security advisories affecting uxper. AI-powered Chinese analysis, POCs, and references for each vulnerability.
uxper operates as a user experience optimization platform, primarily facilitating A/B testing and behavioral analytics for web applications. This functionality inherently requires deep integration with client-side scripts, which has historically exposed the software to significant security risks. The majority of its 28 recorded Common Vulnerabilities and Exposures (CVEs) stem from insufficient input validation and improper access controls, leading to frequent instances of Cross-Site Scripting (XSS) and Remote Code Execution (RCE). These flaws often allow attackers to inject malicious payloads or escalate privileges within the application environment. While no single catastrophic data breach has been publicly attributed to uxper, the high volume of critical vulnerabilities indicates systemic weaknesses in its development lifecycle. Security researchers emphasize that the platform’s reliance on third-party integrations and dynamic script injection creates a broad attack surface, necessitating rigorous patch management and strict sandboxing to mitigate potential exploitation by threat actors targeting user session data.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-49893 | WordPress Nuss Theme <= 1.3.3 - Cross Site Scripting (XSS) Vulnerability — NussCWE-79 | 7.1 | High | 2025-08-20 |
| CVE-2025-49894 | WordPress Nuss Theme <= 1.3.3 - Local File Inclusion Vulnerability — NussCWE-98 | 8.1 | High | 2025-08-20 |
| CVE-2025-52804 | WordPress Nuss theme <= 1.3.7.1 - Broken Access Control Vulnerability — NussCWE-862 | 7.5 | High | 2025-07-16 |
| CVE-2025-52827 | WordPress Nuss theme <= 1.3.3 - PHP Object Injection Vulnerability — NussCWE-502 | 8.8 | High | 2025-06-27 |
This page lists every published CVE security advisory associated with uxper. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.